304 vulnerabilidades · ⚡ Nuclei Orden: CVSS EPSS Año ID
CVE-2020-11530
Software Genérico Web Database Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
93.1%
2020 2 PoCs

A blind SQL injection vulnerability is present in Chop Slider 3, a WordPress plugin. The vulnerability is introduced in the id GET parameter supplied to get_script/index.php, and allows an attacker to execute arbitrary SQL queries in the context of the WP database user.

CVE-2020-27467
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
87.3%
2020 0 PoCs

A Directory Traversal vulnerability exits in Processwire CMS before 2.7.1 via the download parameter to index.php.

CVE-2020-8641
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
86.0%
2020 1 PoC

Lotus Core CMS 1.0.1 allows authenticated Local File Inclusion of .php files via directory traversal in the index.php page_slug parameter.

CVE-2020-13820
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
17.1%
2020 2 PoCs

Extreme Management Center 8.4.1.24 allows unauthenticated reflected XSS via a parameter in a GET request.

CVE-2020-11529
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
70.3%
2020 0 PoCs

Common/Grav.php in Grav before 1.7 has an Open Redirect. This is partially fixed in 1.6.23 and still present in 1.6.x.

CVE-2020-29164
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
10.2%
2020 0 PoCs

PacsOne Server (PACS Server In One Box) below 7.1.1 is affected by cross-site scripting (XSS).

CVE-2020-11455
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
93.2%
2020 2 PoCs

LimeSurvey before 4.1.12+200324 contains a path traversal vulnerability in application/controllers/admin/LimeSurveyFileManager.php.

CVE-2020-13942
Apache Unomi Web ⚡ nuclei
N/A
UNKNOWN
EPSS
94.3%
2020 CWE-20 7 PoCs

It is possible to inject malicious OGNL or MVEL scripts into the /context.json public endpoint. This was partially fixed in 1.5.1 but a new attack vector was found. In Apache Unomi version 1.5.2 scripts are now completely filtered from the input. It is highly recommended to upgrade to the latest available version of the 1.5.x release to fix this problem.

CVE-2020-9036
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
26.2%
2020 1 PoC

Jeedom through 4.0.38 allows XSS.

CVE-2020-13640
Software Genérico Web Database Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
73.9%
2020 3 PoCs

A SQL injection issue in the gVectors wpDiscuz plugin 5.3.5 and earlier for WordPress allows remote attackers to execute arbitrary SQL commands via the order parameter of a wpdLoadMoreComments request. (No 7.x versions are affected.)

CVE-2020-12262
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
1.1%
2020 2 PoCs

Intelbras TIP200 60.61.75.15, TIP200LITE 60.61.75.15, and TIP300 65.61.75.15 devices allow /cgi-bin/cgiServer.exx?page= XSS.

CVE-2020-28185
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
88.6%
2020 2 PoCs

User Enumeration vulnerability in TerraMaster TOS <= 4.2.06 allows remote unauthenticated attackers to identify valid users within the system via the username parameter to wizard/initialise.php.

CVE-2020-13405
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
53.3%
2020 2 PoCs

userfiles/modules/users/controller/controller.php in Microweber before 1.1.20 allows an unauthenticated user to disclose the users database via a /modules/ POST request.

CVE-2020-17505
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
89.6%
2020 2 PoCs

Artica Web Proxy 4.30.000000 allows an authenticated remote attacker to inject commands via the service-cmds parameter in cyrus.php. These commands are executed with root privileges via service_cmds_peform.

CVE-2020-36333
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
46.2%
2020 1 PoC

themegrill-demo-importer before 1.6.2 does not require authentication for wiping the database, because of a reset_wizard_actions hook.

CVE-2020-22208
Software Genérico Web Database ⚡ nuclei
N/A
UNKNOWN
EPSS
32.2%
2020 0 PoCs

SQL Injection in 74cms 3.2.0 via the x parameter to plus/ajax_street.php.

CVE-2020-25864
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
83.3%
2020 1 PoC

HashiCorp Consul and Consul Enterprise up to version 1.9.4 key-value (KV) raw mode was vulnerable to cross-site scripting. Fixed in 1.9.5, 1.8.10 and 1.7.14.

CVE-2020-13700
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
90.2%
2020 0 PoCs

An issue was discovered in the acf-to-rest-api plugin through 3.1.0 for WordPress. It allows an insecure direct object reference via permalinks manipulation, as demonstrated by a wp-json/acf/v3/options/ request that reads sensitive information in the wp_options table, such as the login and pass values.