418 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2020-10914
One Agent General
9.8
CRITICAL
EPSS
79.6%
2020 CWE-502 1 PoC

This vulnerability allows remote attackers to execute arbitrary code on affected installations of VEEAM One Agent 9.5.4.4587. Authentication is not required to exploit this vulnerability. The specific flaw exists within the PerformHandshake method. The issue results from the lack of proper validation of user-supplied data, which can result in deserialization of untrusted data. An attacker can leverage this vulnerability to execute code in the context of the service account. Was ZDI-CAN-10400.

CVE-2020-6141
OS4Ed Web Database
9.8
CRITICAL
EPSS
10.8%
2020 CWE-89 1 PoC

An exploitable SQL injection vulnerability exists in the login functionality of OS4Ed openSIS 7.3. A specially crafted HTTP request can lead to SQL injection. An attacker can send an HTTP request to trigger this vulnerability.

CVE-2020-7775
freediskspace General
9.8
CRITICAL
EPSS
0.5%
2020 1 PoC

This affects all versions of package freediskspace. The vulnerability arises out of improper neutralization of arguments in line 71 of freediskspace.js.

CVE-2020-2555
🔥 KEV WebCenter Portal Database
9.8
CRITICAL
EPSS
93.1%
2020 15 PoCs

Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Caching,CacheStore,Invocation). Supported versions that are affected are 3.7.1.0, 12.1.3.0.0, 12.2.1.3.0 and 12.2.1.4.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via T3 to compromise Oracle Coherence. Successful attacks of this vulnerability can result in takeover of Oracle Coherence. CVSS 3.0 Base Score 9.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).

CVE-2020-7725
worksmith General
9.8
CRITICAL
EPSS
0.4%
2020 2 PoCs

All versions of package worksmith are vulnerable to Prototype Pollution via the setValue function.

CVE-2020-22452
Software Genérico Web Database
9.8
CRITICAL
EPSS
3.2%
2020 1 PoC

SQL Injection vulnerability in function getTableCreationQuery in CreateAddField.php in phpMyAdmin 5.x before 5.2.0 via the tbl_storage_engine or tbl_collation parameters to tbl_create.php.

CVE-2020-26919
🔥 KEV Software Genérico General ⚡ nuclei
9.8
CRITICAL
EPSS
93.8%
2020 1 PoC

NETGEAR JGS516PE devices before 2.6.0.43 are affected by lack of access control at the function level.

CVE-2020-6152
Accusoft General
9.8
CRITICAL
EPSS
0.5%
2020 CWE-252 1 PoC

A code execution vulnerability exists in the DICOM parse_dicom_meta_info functionality of Accusoft ImageGear 19.7. A specially crafted malformed file can cause an out-of-bounds write. An attacker can trigger this vulnerability by providing a victim with a malicious DICOM file.

CVE-2020-11854
Application Performance Management DevOps ⚡ nuclei
9.8
CRITICAL
EPSS
92.4%
2020 1 PoC

Arbitrary code execution vlnerability in Operation bridge Manager, Application Performance Management and Operations Bridge (containerized) vulnerability in Micro Focus products products Operation Bridge Manager, Operation Bridge (containerized) and Application Performance Management. The vulneravility affects: 1.) Operation Bridge Manager versions 2020.05, 2019.11, 2019.05, 2018.11, 2018.05, 10.63,10.62, 10.61, 10.60, 10.12, 10.11, 10.10 and all earlier versions. 2.) Operations Bridge (containerized) 2020.05, 2019.08, 2019.05, 2018.11, 2018.08, 2018.05. 2018.02 and 2017.11. 3.) Application Pe

CVE-2020-22819
Software Genérico Web Database
9.8
CRITICAL
EPSS
0.3%
2020 2 PoCs

MKCMS V6.2 has SQL injection via the /ucenter/active.php verify parameter.

CVE-2020-6072
Videolabs General
9.8
CRITICAL
EPSS
0.8%
2020 1 PoC

An exploitable code execution vulnerability exists in the label-parsing functionality of Videolabs libmicrodns 0.1.0. When parsing compressed labels in mDNS messages, the rr_decode function's return value is not checked, leading to a double free that could be exploited to execute arbitrary code. An attacker can send an mDNS message to trigger this vulnerability.

CVE-2020-3250
Cisco UCS Director Web Networking
9.8
CRITICAL
EPSS
89.7%
2020 CWE-20 2 PoCs

Multiple vulnerabilities in the REST API of Cisco UCS Director and Cisco UCS Director Express for Big Data may allow a remote attacker to bypass authentication or conduct directory traversal attacks on an affected device. For more information about these vulnerabilities, see the Details section of this advisory.

CVE-2020-7713
arr-flatten-unflatten General
9.8
CRITICAL
EPSS
0.4%
2020 2 PoCs

All versions of package arr-flatten-unflatten are vulnerable to Prototype Pollution via the constructor.

CVE-2020-28438
deferred-exec General
9.8
CRITICAL
EPSS
0.5%
2020 1 PoC

This affects all versions of package deferred-exec. The injection point is located in line 42 in lib/deferred-exec.js

CVE-2020-8644
🔥 KEV Software Genérico General ⚡ nuclei
9.8
CRITICAL
EPSS
94.1%
2020 3 PoCs

PlaySMS before 1.4.3 does not sanitize inputs from a malicious string.

CVE-2020-15505
🔥 KEV Software Genérico General ⚡ nuclei
9.8
CRITICAL
EPSS
94.4%
2020 2 PoCs

A remote code execution vulnerability in MobileIron Core & Connector versions 10.3.0.3 and earlier, 10.4.0.0, 10.4.0.1, 10.4.0.2, 10.4.0.3, 10.5.1.0, 10.5.2.0 and 10.6.0.0; and Sentry versions 9.7.2 and earlier, and 9.8.0; and Monitor and Reporting Database (RDB) version 2.0.0.1 and earlier that allows remote attackers to execute arbitrary code via unspecified vectors.

CVE-2020-6756
Software Genérico Web
9.8
CRITICAL
EPSS
11.8%
2020 1 PoC

languageOptions.php in Rasilient PixelStor 5000 K:4.0.1580-20150629 (KDI Version) allows unauthenticated attackers to remotely execute code via the lang parameter.

CVE-2020-37002
Ajenti Web
9.8
CRITICAL
EPSS
0.6%
2020 CWE-78 1 PoC

Ajenti 2.1.36 contains an authentication bypass vulnerability that allows remote attackers to execute arbitrary commands after successful login. Attackers can leverage the /api/terminal/create endpoint to send a netcat reverse shell payload targeting a specified IP and port.

CVE-2020-7723
promisehelpers General
9.8
CRITICAL
EPSS
0.4%
2020 2 PoCs

All versions of package promisehelpers are vulnerable to Prototype Pollution via the insert function.