3722 vulnerabilidades · ⚡ Nuclei Orden: CVSS EPSS Año ID
CVE-2021-24926
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
8.0%
2021 1 PoC

The Domain Check WordPress plugin before 1.0.17 does not sanitise and escape the domain parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting issue

CVE-2021-25094
Tatsu Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
91.4%
2021 CWE-306 5 PoCs

The Tatsu WordPress plugin before 3.3.12 add_custom_font action can be used without prior authentication to upload a rogue zip file which is uncompressed under the WordPress's upload directory. By adding a PHP shell with a filename starting with a dot ".", this can bypass extension control implemented in the plugin. Moreover, there is a race condition in the zip extraction process which makes the shell file live long enough on the filesystem to be callable by an attacker.

CVE-2021-24791
Header Footer Code Manager Web Database Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
6.3%
2021 CWE-89 1 PoC

The Header Footer Code Manager WordPress plugin before 1.1.14 does not validate and escape the "orderby" and "order" request parameters before using them in a SQL statement when viewing the Snippets admin dashboard, leading to SQL injections

CVE-2021-33904
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
10.8%
2021 1 PoC

In Accela Civic Platform through 21.1, the security/hostSignon.do parameter servProvCode is vulnerable to XSS. NOTE: The vendor states "there are configurable security flags and we are unable to reproduce them with the available information.

CVE-2021-24946
Modern Events Calendar Lite Web Database Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
60.1%
2021 CWE-89 2 PoCs

The Modern Events Calendar Lite WordPress plugin before 6.1.5 does not sanitise and escape the time parameter before using it in a SQL statement in the mec_load_single_page AJAX action, available to unauthenticated users, leading to an unauthenticated SQL injection issue

CVE-2021-24335
Car Repair Services & Auto Mechanic Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
45.4%
2021 CWE-79 1 PoC

The Car Repair Services & Auto Mechanic WordPress theme before 4.0 did not properly sanitise its serviceestimatekey search parameter before outputting it back in the page, leading to a reflected Cross-Site Scripting issue

CVE-2021-41826
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
24.0%
2021 1 PoC

PlaceOS Authentication Service before 1.29.10.0 allows app/controllers/auth/sessions_controller.rb open redirect.

CVE-2021-27519
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
3.9%
2021 1 PoC

A cross-site scripting (XSS) issue in FUDForum 3.1.0 allows remote attackers to inject JavaScript via index.php in the "srch" parameter.

CVE-2021-24849
WCFM Marketplace – Best Multivendor Marketplace for WooCommerce Web Database Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
74.6%
2021 CWE-89 1 PoC

The wcfm_ajax_controller AJAX action of the WCFM Marketplace WordPress plugin before 3.4.12, available to unauthenticated and authenticated user, does not properly sanitise multiple parameters before using them in SQL statements, leading to SQL injections

CVE-2021-24278
Redirection for Contact Form 7 Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
35.2%
2021 CWE-863 1 PoC

In the Redirection for Contact Form 7 WordPress plugin before 2.3.4, unauthenticated users can use the wpcf7r_get_nonce AJAX action to retrieve a valid nonce for any WordPress action/function.

CVE-2021-38540
Apache Airflow Web ⚡ nuclei
N/A
UNKNOWN
EPSS
91.8%
2021 CWE-269 1 PoC

The variable import endpoint was not protected by authentication in Airflow >=2.0.0, <2.1.3. This allowed unauthenticated users to hit that endpoint to add/modify Airflow variables used in DAGs, potentially resulting in a denial of service, information disclosure or remote code execution. This issue affects Apache Airflow >=2.0.0, <2.1.3.

CVE-2021-28150
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
78.8%
2021 0 PoCs

Hongdian H8922 3.0.5 devices allow the unprivileged guest user to read cli.conf (with the administrator password and other sensitive data) via /backup2.cgi.

CVE-2021-46379
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
52.2%
2021 3 PoCs

DLink DIR850 ET850-1.08TRb03 is affected by an incorrect access control vulnerability through URL redirection to untrusted site.

CVE-2021-20091
Buffalo WSR-2533DHPL2, Buffalo WSR-2533DHP3 General ⚡ nuclei
N/A
UNKNOWN
EPSS
84.7%
2021 1 PoC

The web interfaces of Buffalo WSR-2533DHPL2 firmware version <= 1.02 and WSR-2533DHP3 firmware version <= 1.24 do not properly sanitize user input. An authenticated remote attacker could leverage this vulnerability to alter device configuration, potentially gaining remote code execution.

CVE-2021-46069
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
5.7%
2021 1 PoC

A Stored Cross Site Scripting (XSS) vulnerability exists in Vehicle Service Management System 1.0 via the Mechanic List Section in login panel.

CVE-2021-46071
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
5.7%
2021 1 PoC

A Stored Cross Site Scripting (XSS) vulnerability exists in Vehicle Service Management System 1.0 via the Category List Section in login panel.

CVE-2021-20031
SonicOS Networking ⚡ nuclei
N/A
UNKNOWN
EPSS
36.2%
2021 CWE-601 1 PoC

A Host Header Redirection vulnerability in SonicOS potentially allows a remote attacker to redirect firewall management users to arbitrary web domains.

CVE-2021-24956
Blog2Social: Social Media Auto Post & Scheduler Web Networking Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
1.5%
2021 CWE-79 1 PoC

The Blog2Social: Social Media Auto Post & Scheduler WordPress plugin before 6.8.7 does not sanitise and escape the b2sShowByDate parameter before outputting it back in an admin page, leading to a Reflected Cross-Site Scripting issue

CVE-2021-24298
Simple Giveaways – Grow your business, email lists and traffic with contests Web ⚡ nuclei
N/A
UNKNOWN
EPSS
13.9%
2021 CWE-79 2 PoCs

The method and share GET parameters of the Giveaway pages were not sanitised, validated or escaped before being output back in the pages, thus leading to reflected XSS

CVE-2021-33851
WordPress Customize Login Image Plugin Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
2.8%
2021 CWE-79 1 PoC

A cross-site scripting (XSS) attack can cause arbitrary code (JavaScript) to run in a user's browser and can use an application as the vehicle for the attack. The XSS payload given in the "Custom logo link" executes whenever the user opens the Settings Page of the "Customize Login Image" Plugin.