3722 vulnerabilidades · ⚡ Nuclei Orden: CVSS EPSS Año ID
CVE-2020-9043
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
29.6%
2020 1 PoC

The wpCentral plugin before 1.5.1 for WordPress allows disclosure of the connection key.

CVE-2020-18268
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
9.2%
2020 0 PoCs

Open Redirect in Z-BlogPHP v1.5.2 and earlier allows remote attackers to obtain sensitive information via the "redirect" parameter in the component "zb_system/cmd.php."

CVE-2020-17362
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
3.9%
2020 0 PoCs

search.php in the Nova Lite theme before 1.3.9 for WordPress allows Reflected XSS.

CVE-2020-13158
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
91.2%
2020 1 PoC

Artica Proxy before 4.30.000000 Community Edition allows Directory Traversal via the fw.progrss.details.php popup parameter.

CVE-2020-13483
Software Genérico Web Networking ⚡ nuclei
N/A
UNKNOWN
EPSS
26.0%
2020 0 PoCs

The Web Application Firewall in Bitrix24 through 20.0.0 allows XSS via the items[ITEMS][ID] parameter to the components/bitrix/mobileapp.list/ajax.php/ URI.

CVE-2020-12127
Software Genérico Networking ⚡ nuclei
N/A
UNKNOWN
EPSS
18.5%
2020 0 PoCs

An information disclosure vulnerability in the /cgi-bin/ExportAllSettings.sh endpoint of the WAVLINK WN530H4 M30H4.V5030.190403 allows an attacker to leak router settings, including cleartext login details, DNS settings, and other sensitive information without authentication.

CVE-2020-7980
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
93.8%
2020 3 PoCs

Intellian Aptus Web 1.24 allows remote attackers to execute arbitrary OS commands via the Q field within JSON data to the cgi-bin/libagent.cgi URI. NOTE: a valid sid cookie for a login to the intellian default account might be needed.

CVE-2020-13379
Software Genérico DevOps Web ⚡ nuclei
N/A
UNKNOWN
EPSS
93.1%
2020 4 PoCs

The avatar feature in Grafana 3.0.1 through 7.0.1 has an SSRF Incorrect Access Control issue. This vulnerability allows any unauthenticated user/client to make Grafana send HTTP requests to any URL and return its result to the user/client. This can be used to gain information about the network that Grafana is running on. Furthermore, passing invalid URL objects could be used for DOS'ing Grafana via SegFault.

CVE-2020-23015
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
11.0%
2020 0 PoCs

An open redirect issue was discovered in OPNsense through 20.1.5. The redirect parameter "url" in login page was not filtered and can redirect user to any website.

CVE-2020-29597
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
85.3%
2020 2 PoCs

IncomCMS 2.0 has a modules/uploader/showcase/script.php insecure file upload vulnerability. This vulnerability allows unauthenticated attackers to upload files into the server.

CVE-2020-22209
Software Genérico Web Database ⚡ nuclei
N/A
UNKNOWN
EPSS
43.9%
2020 0 PoCs

SQL Injection in 74cms 3.2.0 via the query parameter to plus/ajax_common.php.

CVE-2020-26935
Software Genérico Web Database ⚡ nuclei
N/A
UNKNOWN
EPSS
89.6%
2020 1 PoC

An issue was discovered in SearchController in phpMyAdmin before 4.9.6 and 5.x before 5.0.3. A SQL injection vulnerability was discovered in how phpMyAdmin processes SQL statements in the search feature. An attacker could use this flaw to inject malicious SQL in to a query.

CVE-2020-11514
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
65.5%
2020 0 PoCs

The Rank Math plugin through 1.0.40.2 for WordPress allows unauthenticated remote attackers to update arbitrary WordPress metadata, including the ability to escalate or revoke administrative privileges for existing users via the unsecured rankmath/v1/updateMeta REST API endpoint.

CVE-2020-5776
MAGMI Web ⚡ nuclei
N/A
UNKNOWN
EPSS
78.8%
2020 1 PoC

Currently, all versions of MAGMI are vulnerable to CSRF due to the lack of CSRF tokens. RCE (via phpcli command) is possible in the event that a CSRF is leveraged against an existing admin session for MAGMI.

CVE-2020-27838
keycloak General ⚡ nuclei
N/A
UNKNOWN
EPSS
85.1%
2020 CWE-287 1 PoC

A flaw was found in keycloak in versions prior to 13.0.0. The client registration endpoint allows fetching information about PUBLIC clients (like client secret) without authentication which could be an issue if the same PUBLIC client changed to CONFIDENTIAL later. The highest threat from this vulnerability is to data confidentiality.

CVE-2020-9344
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
39.8%
2020 2 PoCs

Subversion ALM for the enterprise before 8.8.2 allows reflected XSS at multiple locations.

CVE-2020-13117
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
93.9%
2020 1 PoC

Wavlink WN575A4, WN579X3, and WN530G3A devices through 2020-05-15 allow unauthenticated remote users to inject commands via the key parameter in a login request.

CVE-2020-35598
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
79.4%
2020 0 PoCs

ACS Advanced Comment System 1.0 is affected by Directory Traversal via an advanced_component_system/index.php?ACS_path=..%2f URI. NOTE: this might be the same as CVE-2009-4623

CVE-2020-5307
Software Genérico Web Database ⚡ nuclei
N/A
UNKNOWN
EPSS
80.5%
2020 1 PoC

PHPGurukul Dairy Farm Shop Management System 1.0 is vulnerable to SQL injection, as demonstrated by the username parameter in index.php, the category and CategoryCode parameters in add-category.php, the CompanyName parameter in add-company.php, and the ProductName and ProductPrice parameters in add-product.php.

CVE-2020-14408
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
1.6%
2020 0 PoCs

An issue was discovered in Agentejo Cockpit 0.10.2. Insufficient sanitization of the to parameter in the /auth/login route allows for injection of arbitrary JavaScript code into a web page's content, creating a Reflected XSS attack vector.