3722 vulnerabilidades · ⚡ Nuclei Orden: CVSS EPSS Año ID
CVE-2017-18490
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
0.1%
2017 0 PoCs

The contact-form-multi plugin before 1.2.1 for WordPress has multiple XSS issues.

CVE-2017-18491
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
0.1%
2017 0 PoCs

The contact-form-plugin plugin before 4.0.6 for WordPress has multiple XSS issues.

CVE-2017-14135
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
90.1%
2017 0 PoCs

enigma2-plugins/blob/master/webadmin/src/WebChilds/Script.py in the webadmin plugin for opendreambox 2.0.0 allows remote attackers to execute arbitrary OS commands via shell metacharacters in the command parameter to the /script URI.

CVE-2017-14524
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
1.2%
2017 1 PoC

Multiple open redirect vulnerabilities in OpenText Documentum Administrator 7.2.0180.0055 allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a (1) URL in the startat parameter to xda/help/en/default.htm or (2) /%09/ (slash encoded horizontal tab slash) followed by a domain in the redirectUrl parameter to xda/component/virtuallinkconnect.

CVE-2017-1000029
Software Genérico Database ⚡ nuclei
N/A
UNKNOWN
EPSS
69.0%
2017 1 PoC

Oracle, GlassFish Server Open Source Edition 3.0.1 (build 22) is vulnerable to Local File Inclusion vulnerability, that makes it possible to include arbitrary files on the server, this vulnerability can be exploited without any prior authentication.

CVE-2017-14651
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
3.7%
2017 1 PoC

WSO2 Data Analytics Server 3.1.0 has XSS in carbon/resources/add_collection_ajaxprocessor.jsp via the collectionName or parentPath parameter.

CVE-2017-14622
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
0.1%
2017 1 PoC

Multiple cross-site scripting (XSS) vulnerabilities in the 2kb Amazon Affiliates Store plugin before 2.1.1 for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) page parameter or (2) kbAction parameter in the kbAmz page to wp-admin/admin.php.

CVE-2017-18590
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
0.0%
2017 0 PoCs

The timesheet plugin before 0.1.5 for WordPress has multiple XSS issues.

CVE-2017-12635
Apache CouchDB Web ⚡ nuclei
N/A
UNKNOWN
EPSS
94.1%
2017 5 PoCs

Due to differences in the Erlang-based JSON parser and JavaScript-based JSON parser, it is possible in Apache CouchDB before 1.7.0 and 2.x before 2.1.1 to submit _users documents with duplicate keys for 'roles' used for access control within the database, including the special case '_admin' role, that denotes administrative users. In combination with CVE-2017-12636 (Remote Code Execution), this can be used to give non-admin users access to arbitrary shell commands on the server as the database system user. The JSON parser differences result in behaviour that if two 'roles' keys are available i

CVE-2017-11512
ManageEngine ServiceDesk General ⚡ nuclei
N/A
UNKNOWN
EPSS
82.9%
2017 CWE-22 0 PoCs

The ManageEngine ServiceDesk 9.3.9328 is vulnerable to arbitrary file downloads due to improper restrictions of the pathname used in the name parameter for the download-snapshot URL. An unauthenticated remote attacker can use this vulnerability to download arbitrary files.

CVE-2017-0929
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
92.6%
2017 0 PoCs

DNN (aka DotNetNuke) before 9.2.0 suffers from a Server-Side Request Forgery (SSRF) vulnerability in the DnnImageHandler class. Attackers may be able to access information about internal network resources.

CVE-2017-18565
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
0.1%
2017 0 PoCs

The updater plugin before 1.35 for WordPress has multiple XSS issues.

CVE-2017-18349
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
88.7%
2017 2 PoCs

parseObject in Fastjson before 1.2.25, as used in FastjsonEngine in Pippo 1.11.0 and other products, allows remote attackers to execute arbitrary code via a crafted JSON request, as demonstrated by a crafted rmi:// URI in the dataSourceName field of HTTP POST data to the Pippo /json URI, which is mishandled in AjaxApplication.java.

CVE-2017-14725
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
4.2%
2017 1 PoC

Before version 4.8.2, WordPress was susceptible to an open redirect attack in wp-admin/edit-tag-form.php and wp-admin/user-edit.php.

CVE-2017-18598
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
1.0%
2017 1 PoC

The Qards plugin through 2017-10-11 for WordPress has XSS via a remote document specified in the url parameter to html2canvasproxy.php.

CVE-2017-17731
Software Genérico Web Database ⚡ nuclei
N/A
UNKNOWN
EPSS
90.2%
2017 0 PoCs

DedeCMS through 5.7 has SQL Injection via the $_FILES superglobal to plus/recommend.php.

CVE-2017-18502
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
0.3%
2017 0 PoCs

The subscriber plugin before 1.3.5 for WordPress has multiple XSS issues.

CVE-2017-18638
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
90.8%
2017 2 PoCs

send_email in graphite-web/webapp/graphite/composer/views.py in Graphite through 1.1.5 is vulnerable to SSRF. The vulnerable SSRF endpoint can be used by an attacker to have the Graphite web server request any resource. The response to this SSRF request is encoded into an image file and then sent to an e-mail address that can be supplied by the attacker. Thus, an attacker can exfiltrate any information.

CVE-2017-18537
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
0.1%
2017 0 PoCs

The visitors-online plugin before 1.0.0 for WordPress has multiple XSS issues.

CVE-2017-18556
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
0.1%
2017 0 PoCs

The bws-google-analytics plugin before 1.7.1 for WordPress has multiple XSS issues.