3722 vulnerabilidades · ⚡ Nuclei Orden: CVSS EPSS Año ID
CVE-2021-24351
The Plus Addons for Elementor Page Builder Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
12.4%
2021 CWE-79 1 PoC

The theplus_more_post AJAX action of The Plus Addons for Elementor Page Builder WordPress plugin before 4.1.12 did not properly sanitise some of its fields, leading to a reflected Cross-Site Scripting (exploitable on both unauthenticated and authenticated users)

CVE-2021-40978
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
79.7%
2021 2 PoCs

The mkdocs 1.2.2 built-in dev-server allows directory traversal using the port 8000, enabling remote exploitation to obtain :sensitive information. NOTE: the vendor has disputed this as described in https://github.com/mkdocs/mkdocs/issues/2601.] and https://github.com/nisdn/CVE-2021-40978/issues/1

CVE-2021-44528
https://github.com/rails/rails Web ⚡ nuclei
N/A
UNKNOWN
EPSS
20.8%
2021 CWE-601 0 PoCs

A open redirect vulnerability exists in Action Pack >= 6.0.0 that could allow an attacker to craft a "X-Forwarded-Host" headers in combination with certain "allowed host" formats can cause the Host Authorization middleware in Action Pack to redirect users to a malicious website.

CVE-2021-37573
Software Genérico DevOps Web ⚡ nuclei
N/A
UNKNOWN
EPSS
51.9%
2021 3 PoCs

A reflected cross-site scripting (XSS) vulnerability in the web server TTiny Java Web Server and Servlet Container (TJWS) <=1.115 allows an adversary to inject malicious code on the server's "404 Page not Found" error page

CVE-2021-42663
Software Genérico Web Database ⚡ nuclei
N/A
UNKNOWN
EPSS
38.0%
2021 3 PoCs

An HTML injection vulnerability exists in Sourcecodester Online Event Booking and Reservation System in PHP/MySQL via the msg parameter to /event-management/index.php. An attacker can leverage this vulnerability in order to change the visibility of the website. Once the target user clicks on a given link he will display the content of the HTML code of the attacker's choice.

CVE-2021-34187
Software Genérico Web Database ⚡ nuclei
N/A
UNKNOWN
EPSS
89.5%
2021 1 PoC

main/inc/ajax/model.ajax.php in Chamilo through 1.11.14 allows SQL Injection via the searchField, filters, or filters2 parameter.

CVE-2021-44848
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
61.0%
2021 1 PoC

In Cibele Thinfinity VirtualUI before 3.0, /changePassword returns different responses for invalid authentication requests depending on whether the username exists.

CVE-2021-24146
Modern Events Calendar Lite Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
76.5%
2021 CWE-284 2 PoCs

Lack of authorisation checks in the Modern Events Calendar Lite WordPress plugin, versions before 5.16.5, did not properly restrict access to the export files, allowing unauthenticated users to exports all events data in CSV or XML format for example.

CVE-2021-46104
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
19.9%
2021 0 PoCs

An issue was discovered in webp_server_go 0.4.0. There is a directory traversal vulnerability that can read arbitrary file information on the server.

CVE-2021-24644
Images to WebP Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
30.5%
2021 CWE-22 1 PoC

The Images to WebP WordPress plugin before 1.9 does not validate or sanitise the tab parameter before passing it to the include() function, which could lead to a Local File Inclusion issue

CVE-2021-24527
User Registration & User Profile – Profile Builder Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
75.6%
2021 CWE-287 1 PoC

The User Registration & User Profile – Profile Builder WordPress plugin before 3.4.9 has a bug allowing any user to reset the password of the admin of the blog, and gain unauthorised access, due to a bypass in the way the reset key is checked. Furthermore, the admin will not be notified of such change by email for example.

CVE-2021-3002
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
12.7%
2021 1 PoC

Seo Panel 4.8.0 allows reflected XSS via the seo/seopanel/login.php?sec=forgot email parameter.

CVE-2021-3223
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
91.5%
2021 0 PoCs

Node-RED-Dashboard before 2.26.2 allows ui_base/js/..%2f directory traversal to read files.

CVE-2021-33558
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
87.5%
2021 3 PoCs

Boa 0.94.13 allows remote attackers to obtain sensitive information via a misconfiguration involving backup.html, preview.html, js/log.js, log.html, email.html, online-users.html, and config.js. NOTE: multiple third parties report that this is a site-specific issue because those files are not part of Boa.

CVE-2021-39501
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
31.9%
2021 0 PoCs

EyouCMS 1.5.4 is vulnerable to Open Redirect. An attacker can redirect a user to a malicious url via the Logout function.

CVE-2021-31250
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
82.8%
2021 1 PoC

Multiple storage XSS vulnerabilities were discovered on BF-430, BF-431 and BF-450M TCP/IP Converter devices from CHIYU Technology Inc due to a lack of sanitization of the input on the components man.cgi, if.cgi, dhcpc.cgi, ppp.cgi.

CVE-2021-30497
Software Genérico Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
92.7%
2021 0 PoCs

Ivanti Avalanche (Premise) 6.3.2 allows remote unauthenticated users to read arbitrary files via Absolute Path Traversal. The imageFilePath parameter processed by the /AvalancheWeb/image endpoint is not verified to be within the scope of the image folder, e.g., the attacker can obtain sensitive information via the C:/Windows/system32/config/system.sav value.

CVE-2021-26702
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
3.3%
2021 0 PoCs

EPrints 3.4.2 exposes a reflected XSS opportunity in the dataset parameter to the cgi/dataset_dictionary URI.

CVE-2021-24245
Stop Spammers Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
17.9%
2021 CWE-79 2 PoCs

The Stop Spammers WordPress plugin before 2021.9 did not escape user input when blocking requests (such as matching a spam word), outputting it in an attribute after sanitising it to remove HTML tags, which is not sufficient and lead to a reflected Cross-Site Scripting issue.

CVE-2021-24991
WooCommerce PDF Invoices & Packing Slips Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
3.4%
2021 CWE-79 1 PoC

The WooCommerce PDF Invoices & Packing Slips WordPress plugin before 2.10.5 does not escape the tab and section parameters before outputting it back in an attribute, leading to a Reflected Cross-Site Scripting in the admin dashboard