3722 vulnerabilidades · ⚡ Nuclei Orden: CVSS EPSS Año ID
CVE-2019-9041
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
88.2%
2019 1 PoC

An issue was discovered in ZZZCMS zzzphp V1.6.1. In the inc/zzz_template.php file, the parserIfLabel() function's filtering is not strict, resulting in PHP code execution, as demonstrated by the if:assert substring.

CVE-2019-7275
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
53.7%
2019 1 PoC

Optergy Proton/Enterprise devices allow Open Redirect.

CVE-2019-7255
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
57.6%
2019 1 PoC

Linear eMerge E3-Series devices allow XSS.

CVE-2019-16332
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
22.3%
2019 2 PoCs

In the api-bearer-auth plugin before 20190907 for WordPress, the server parameter is not correctly filtered in the swagger-config.yaml.php file, and it is possible to inject JavaScript code, aka XSS.

CVE-2019-9726
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
59.7%
2019 0 PoCs

Directory Traversal / Arbitrary File Read in eQ-3 AG Homematic CCU3 3.43.15 and earlier allows remote attackers to read arbitrary files of the device's filesystem. This vulnerability can be exploited by unauthenticated attackers with access to the web interface.

CVE-2019-12987
Software Genérico Networking ⚡ nuclei
N/A
UNKNOWN
EPSS
91.7%
2019 1 PoC

Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 3 of 6).

CVE-2019-15811
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
1.2%
2019 1 PoC

In DomainMOD through 4.13, the parameter daterange in the file reporting/domains/cost-by-month.php has XSS.

CVE-2019-16931
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
1.7%
2019 2 PoCs

A stored XSS vulnerability in the Visualizer plugin 3.3.0 for WordPress allows an unauthenticated attacker to execute arbitrary JavaScript when an admin or other privileged user edits the chart via the admin dashboard. This occurs because classes/Visualizer/Gutenberg/Block.php registers wp-json/visualizer/v1/update-chart with no access control, and classes/Visualizer/Render/Page/Data.php lacks output sanitization.

CVE-2019-3401
Jira General ⚡ nuclei
N/A
UNKNOWN
EPSS
66.0%
2019 CWE-863 0 PoCs

The ManageFilters.jspa resource in Jira before version 7.13.3 and from version 8.0.0 before version 8.1.1 allows remote attackers to enumerate usernames via an incorrect authorisation check.

CVE-2019-9955
Software Genérico Web Networking ⚡ nuclei
N/A
UNKNOWN
EPSS
10.7%
2019 2 PoCs

On Zyxel ATP200, ATP500, ATP800, USG20-VPN, USG20W-VPN, USG40, USG40W, USG60, USG60W, USG110, USG210, USG310, USG1100, USG1900, USG2200-VPN, ZyWALL 110, ZyWALL 310, ZyWALL 1100 devices, the security firewall login page is vulnerable to Reflected XSS via the unsanitized 'mp_idx' parameter.

CVE-2019-10098
Apache HTTP Server Web ⚡ nuclei
N/A
UNKNOWN
EPSS
77.4%
2019 CWE-601 4 PoCs

In Apache HTTP server 2.4.0 to 2.4.39, Redirects configured with mod_rewrite that were intended to be self-referential might be fooled by encoded newlines and redirect instead to an unexpected URL within the request URL.

CVE-2019-17418
Software Genérico Database ⚡ nuclei
N/A
UNKNOWN
EPSS
93.5%
2019 0 PoCs

An issue was discovered in MetInfo 7.0. There is SQL injection via the admin/?n=language&c=language_general&a=doSearchParameter appno parameter, a different issue than CVE-2019-16997.

CVE-2019-0221
Apache Tomcat Web ⚡ nuclei
N/A
UNKNOWN
EPSS
14.5%
2019 4 PoCs

The SSI printenv command in Apache Tomcat 9.0.0.M1 to 9.0.0.17, 8.5.0 to 8.5.39 and 7.0.0 to 7.0.93 echoes user provided data without escaping and is, therefore, vulnerable to XSS. SSI is disabled by default. The printenv command is intended for debugging and is unlikely to be present in a production website.

CVE-2019-7276
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
92.3%
2019 2 PoCs

Optergy Proton/Enterprise devices allow Remote Root Code Execution via a Backdoor Console.

CVE-2019-9632
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
79.2%
2019 0 PoCs

ESAFENET CDG V3 and V5 has an arbitrary file download vulnerability via the fileName parameter in download.jsp because the InstallationPack parameter is mishandled in a /CDGServer3/ClientAjax request.

CVE-2019-8937
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
43.8%
2019 2 PoCs

HotelDruid 2.3.0 has XSS affecting the nsextt, cambia1, mese_fine, origine, and anno parameters in creaprezzi.php, tabella3.php, personalizza.php, and visualizza_tabelle.php.

CVE-2019-15713
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
4.7%
2019 0 PoCs

The my-calendar plugin before 3.1.10 for WordPress has XSS.

CVE-2019-14251
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
56.6%
2019 1 PoC

An issue was discovered in T24 in TEMENOS Channels R15.01. The login page presents JavaScript functions to access a document on the server once successfully authenticated. However, an attacker can leverage downloadDocServer() to traverse the file system and access files or directories that are outside of the restricted directory because WealthT24/GetImage is used with the docDownloadPath and uploadLocation parameters.

CVE-2019-10405
Jenkins DevOps Web ⚡ nuclei
N/A
UNKNOWN
EPSS
79.8%
2019 0 PoCs

Jenkins 2.196 and earlier, LTS 2.176.3 and earlier printed the value of the "Cookie" HTTP request header on the /whoAmI/ URL, allowing attackers exploiting another XSS vulnerability to obtain the HTTP session cookie despite it being marked HttpOnly.

CVE-2019-14312
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
55.6%
2019 1 PoC

Aptana Jaxer 1.0.3.4547 is vulnerable to a local file inclusion vulnerability in the wikilite source code viewer. This vulnerability allows a remote attacker to read internal files on the server via a tools/sourceViewer/index.html?filename=../ URI.