4741 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2023-23857
NetWeaver AS for Java Web
9.9
CRITICAL
EPSS
0.4%
2023 CWE-287 1 PoC

Due to missing authentication check, SAP NetWeaver AS for Java - version 7.50, allows an unauthenticated attacker to attach to an open interface and make use of an open naming and directory API to access services which can be used to perform unauthorized operations affecting users and services across systems. On a successful exploitation, the attacker can read and modify some sensitive information but can also be used to lock up any element or operation of the system making that it unresponsive or unavailable.

CVE-2023-0022
BusinessObjects Business Intelligence platform (Analysis edition for OLAP) General
9.9
CRITICAL
EPSS
0.8%
2023 CWE-94 1 PoC

SAP BusinessObjects Business Intelligence Analysis edition for OLAP allows an authenticated attacker to inject malicious code that can be executed by the application over the network. On successful exploitation, an attacker can perform operations that may completely compromise the application causing a high impact on the confidentiality, integrity, and availability of the application.

CVE-2023-48777
Elementor Website Builder General ⚡ nuclei
9.9
CRITICAL
EPSS
88.8%
2023 CWE-434 1 PoC

Unrestricted Upload of File with Dangerous Type vulnerability in Elementor.Com Elementor Website Builder.This issue affects Elementor Website Builder: from 3.3.0 through 3.18.1.

CVE-2023-47840
Qode Essential Addons General
9.9
CRITICAL
EPSS
21.2%
2023 CWE-94 1 PoC

Improper Control of Generation of Code ('Code Injection') vulnerability in Qode Interactive Qode Essential Addons.This issue affects Qode Essential Addons: from n/a through 1.5.2.

CVE-2023-53739
Tinycontrol LAN Controller v General
9.9
CRITICAL
EPSS
0.3%
2023 CWE-260 2 PoCs

Tinycontrol LAN Controller v3 LK3 version 1.58a contains an unauthenticated vulnerability that allows remote attackers to download configuration backup files containing sensitive credentials. Attackers can retrieve the lk3_settings.bin file and extract base64-encoded user and admin passwords without authentication.

CVE-2023-39424
IRM Next Generation Database Windows
9.9
CRITICAL
EPSS
0.4%
2023 CWE-74 1 PoC

A vulnerability in RDPngFileUpload.dll, as used in the IRM Next Generation booking system, allows a remote attacker to upload arbitrary content (such as a web shell component) to the SQL database and execute it with SYSTEM privileges. This vulnerability requires authentication to be exploited but can be paired with another vulnerability in the platform (CVE-2023-39420, which grants access to hardcoded credentials) to carry the attack without having assigned credentials. 

CVE-2023-31415
Kibana Web
9.9
CRITICAL
EPSS
0.7%
2023 CWE-94 1 PoC

Kibana version 8.7.0 contains an arbitrary code execution flaw. An attacker with All privileges to the Uptime/Synthetics feature could send a request that will attempt to execute JavaScript code. This could lead to the attacker executing arbitrary commands on the host system with permissions of the Kibana process.

CVE-2023-3710
PM23/43 General ⚡ nuclei
9.9
CRITICAL
EPSS
91.7%
2023 CWE-20 3 PoCs

Improper Input Validation vulnerability in Honeywell PM43 on 32 bit, ARM (Printer web page modules) allows Command Injection.This issue affects PM43 versions prior to P10.19.050004. Update to the latest available firmware version of the respective printers to version MR19.5 (e.g. P10.19.050006).

CVE-2023-0016
SAP BPC MS 10.0 Database
9.9
CRITICAL
EPSS
0.5%
2023 CWE-89 1 PoC

SAP BPC MS 10.0 - version 810, allows an unauthorized attacker to execute crafted database queries. The exploitation of this issue could lead to SQL injection vulnerability and could allow an attacker to access, modify, and/or delete data from the backend database.

CVE-2023-0671
froxlor/froxlor General
9.9
CRITICAL
EPSS
0.5%
2023 CWE-94 1 PoC

Code Injection in GitHub repository froxlor/froxlor prior to 2.0.10.

CVE-2024-27972
WP Fusion Lite General
9.9
CRITICAL
EPSS
38.2%
2024 CWE-94 1 PoC

Improper Control of Generation of Code ('Code Injection') vulnerability in Jack Arturo WP Fusion Lite wp-fusion-lite.This issue affects WP Fusion Lite: from n/a through <= 3.41.24.

CVE-2024-24707
Cwicly General
9.9
CRITICAL
EPSS
0.6%
2024 CWE-94 1 PoC

Improper Control of Generation of Code ('Code Injection') vulnerability in Cwicly Builder, SL. Cwicly allows Code Injection.This issue affects Cwicly: from n/a through 1.4.0.2.

CVE-2024-39943
Software Genérico Web
9.9
CRITICAL
EPSS
78.3%
2024 4 PoCs

rejetto HFS (aka HTTP File Server) 3 before 0.52.10 on Linux, UNIX, and macOS allows OS command execution by remote authenticated users (if they have Upload permissions). This occurs because a shell is used to execute df (i.e., with execSync instead of spawnSync in child_process in Node.js).

CVE-2024-37361
Pentaho Data Integration & Analytics General
9.9
CRITICAL
EPSS
0.4%
2024 CWE-502 1 PoC

The application deserializes untrusted data without sufficiently verifying that the resulting data will be valid. (CWE-502)   Hitachi Vantara Pentaho Business Analytics Server versions before 10.2.0.0 and 9.3.0.9, including 8.3.x, deserialize untrusted JSON data without constraining the parser to approved classes and methods.   When developers place no restrictions on "gadget chains," or series of instances and method invocations that can self-execute during the deserialization process (i.e., before the object is returned to the caller), it is sometimes possible for attackers to le

CVE-2024-52429
WP Quick Setup General
9.9
CRITICAL
EPSS
41.1%
2024 CWE-434 1 PoC

Unrestricted Upload of File with Dangerous Type vulnerability in AntonHoelstad WP Quick Setup wp-quick-setup allows Upload a Web Shell to a Web Server.This issue affects WP Quick Setup: from n/a through <= 2.0.

CVE-2024-50427
SurveyJS General
9.9
CRITICAL
EPSS
69.7%
2024 CWE-434 1 PoC

Unrestricted Upload of File with Dangerous Type vulnerability in devsoftbaltic SurveyJS surveyjs.This issue affects SurveyJS: from n/a through <= 1.9.136.

CVE-2024-20997
Hospitality Simphony Web Database
9.9
CRITICAL
EPSS
1.1%
2024 1 PoC

Vulnerability in the Oracle Hospitality Simphony product of Oracle Food and Beverage Applications (component: Simphony Enterprise Server). Supported versions that are affected are 19.1.0-19.5.4. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Hospitality Simphony. While the vulnerability is in Oracle Hospitality Simphony, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in takeover of Oracle Hospitality Simphony. CVSS 3.1 Base Score 9.9 (Confidentiality,

CVE-2024-4701
Genie General
9.9
CRITICAL
EPSS
17.6%
2024 CWE-22 2 PoCs

A path traversal issue potentially leading to remote code execution in Genie for all versions prior to 4.3.18

CVE-2024-25693
Portal for ArcGIS General
9.9
CRITICAL
EPSS
9.9%
2024 CWE-22 1 PoC

There is a path traversal in Esri Portal for ArcGIS versions <= 11.2. Successful exploitation may allow a remote, authenticated attacker to traverse the file system to access files or execute code outside of the intended directory. 

CVE-2024-8672
Widget Options – Advanced Conditional Visibility for Gutenberg Blocks & Classic Widgets Web Windows
9.9
CRITICAL
EPSS
78.2%
2024 CWE-94 1 PoC

The Widget Options – The #1 WordPress Widget & Block Control Plugin plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 4.0.7 via the display logic functionality that extends several page builders. This is due to the plugin allowing users to supply input that will be passed through eval() without any filtering or capability checks. This makes it possible for authenticated attackers, with contributor-level access and above, to execute code on the server. Special note: We suggested the vendor implement an allowlist of functions and limit the ability