3722 vulnerabilidades · ⚡ Nuclei Orden: CVSS EPSS Año ID
CVE-2018-10095
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
47.5%
2018 2 PoCs

Cross-site scripting (XSS) vulnerability in Dolibarr before 7.0.2 allows remote attackers to inject arbitrary web script or HTML via the foruserlogin parameter to adherents/cartes/carte.php.

CVE-2018-16139
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
0.8%
2018 0 PoCs

Cross-site scripting (XSS) vulnerability in BIBLIOsoft BIBLIOpac 2008 allows remote attackers to inject arbitrary web script or HTML via the db or action parameter to to bin/wxis.exe/bibliopac/.

CVE-2018-9995
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
94.1%
2018 24 PoCs

TBK DVR4104 and DVR4216 devices, as well as Novo, CeNova, QSee, Pulnix, XVR 5 in 1, Securus, Night OWL, DVR Login, HVR Login, and MDVR Login, which run re-branded versions of the original TBK DVR4104 and DVR4216 series, allow remote attackers to bypass authentication via a "Cookie: uid=admin" header, as demonstrated by a device.rsp?opt=user&cmd=list request that provides credentials within JSON data in a response.

CVE-2018-11231
Software Genérico Database ⚡ nuclei
N/A
UNKNOWN
EPSS
76.7%
2018 0 PoCs

In the Divido plugin for OpenCart, there is SQL injection. Attackers can use SQL injection to get some confidential information.

CVE-2018-2791
WebCenter Sites Web Database ⚡ nuclei
N/A
UNKNOWN
EPSS
87.0%
2018 2 PoCs

Vulnerability in the Oracle WebCenter Sites component of Oracle Fusion Middleware (subcomponent: Advanced UI). Supported versions that are affected are 11.1.1.8.0, 12.2.1.2.0 and 12.2.1.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle WebCenter Sites. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle WebCenter Sites, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to crit

CVE-2018-10737
Software Genérico Web Database ⚡ nuclei
N/A
UNKNOWN
EPSS
83.2%
2018 0 PoCs

A SQL injection issue was discovered in Nagios XI before 5.4.13 via the admin/logbook.php txtSearch parameter.

CVE-2018-6184
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
14.6%
2018 1 PoC

ZEIT Next.js 4 before 4.2.3 has Directory Traversal under the /_next request namespace.

CVE-2018-5230
Jira Web ⚡ nuclei
N/A
UNKNOWN
EPSS
22.7%
2018 0 PoCs

The issue collector in Atlassian Jira before version 7.6.6, from version 7.7.0 before version 7.7.4, from version 7.8.0 before version 7.8.4 and from version 7.9.0 before version 7.9.2 allows remote attackers to inject arbitrary HTML or JavaScript via a cross site scripting (XSS) vulnerability in the error message of custom fields when an invalid value is specified.

CVE-2018-18775
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
16.0%
2018 2 PoCs

Microstrategy Web, version 7, does not sufficiently encode user-controlled inputs, resulting in a Cross-Site Scripting (XSS) vulnerability via the Login.asp Msg parameter. NOTE: this is a deprecated product.

CVE-2018-19207
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
91.9%
2018 4 PoCs

The Van Ons WP GDPR Compliance (aka wp-gdpr-compliance) plugin before 1.4.3 for WordPress allows remote attackers to execute arbitrary code because $wpdb->prepare() input is mishandled, as exploited in the wild in November 2018.

CVE-2018-18608
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
7.9%
2018 0 PoCs

DedeCMS 5.7 SP2 allows XSS via the function named GetPageList defined in the include/datalistcp.class.php file that is used to display the page numbers list at the bottom of some templates, as demonstrated by the PATH_INFO to /member/index.php, /member/pm.php, /member/content_list.php, or /plus/feedback.php.

CVE-2018-7765
U.Motion Web Database ⚡ nuclei
N/A
UNKNOWN
EPSS
6.1%
2018 1 PoC

The vulnerability exists within processing of track_import_export.php in Schneider Electric U.motion Builder software versions prior to v1.3.4. The underlying SQLite database query is subject to SQL injection on the object_id input parameter.

CVE-2018-16363
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
0.4%
2018 2 PoCs

The mndpsingh287 File Manager plugin V2.9 for WordPress has XSS via the lang parameter in a wp-admin/admin.php?page=wp_file_manager request because set_transient is used in file_folder_manager.php and there is an echo of lang in lib\wpfilemanager.php.

CVE-2018-8024
Apache Spark Web ⚡ nuclei
N/A
UNKNOWN
EPSS
61.1%
2018 0 PoCs

In Apache Spark 2.1.0 to 2.1.2, 2.2.0 to 2.2.1, and 2.3.0, it's possible for a malicious user to construct a URL pointing to a Spark cluster's UI's job and stage info pages, and if a user can be tricked into accessing the URL, can be used to cause script to execute and expose information from the user's view of the Spark UI. While some browsers like recent versions of Chrome and Safari are able to block this type of attack, current versions of Firefox (and possibly others) do not.

CVE-2018-19439
Software Genérico Web Database ⚡ nuclei
N/A
UNKNOWN
EPSS
38.9%
2018 2 PoCs

XSS exists in the Administration Console in Oracle Secure Global Desktop 4.4 20080807152602 (but was fixed in later versions including 5.4). helpwindow.jsp has reflected XSS via all parameters, as demonstrated by the sgdadmin/faces/com_sun_web_ui/help/helpwindow.jsp windowTitle parameter.

CVE-2018-10956
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
92.1%
2018 2 PoCs

IPConfigure Orchid Core VMS 2.0.5 allows Directory Traversal.

CVE-2018-6008
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
76.0%
2018 2 PoCs

Arbitrary File Download exists in the Jtag Members Directory 5.3.7 component for Joomla! via the download_file parameter.

CVE-2018-10822
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
85.9%
2018 2 PoCs

Directory traversal vulnerability in the web interface on D-Link DWR-116 through 1.06, DIR-140L through 1.02, DIR-640L through 1.02, DWR-512 through 2.02, DWR-712 through 2.02, DWR-912 through 2.02, DWR-921 through 2.02, and DWR-111 through 1.01 devices allows remote attackers to read arbitrary files via a /.. or // after "GET /uir" in an HTTP request. NOTE: this vulnerability exists because of an incorrect fix for CVE-2017-6190.

CVE-2018-3167
Application Management Pack for Oracle E-Business Suite Web Database ⚡ nuclei
N/A
UNKNOWN
EPSS
68.0%
2018 1 PoC

Vulnerability in the Application Management Pack for Oracle E-Business Suite component of Oracle E-Business Suite (subcomponent: User Monitoring). Supported versions that are affected are 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6 and 12.2.7. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Application Management Pack for Oracle E-Business Suite. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Application Management Pack for Oracle E-Business Suite accessible data. CVSS 3.0 Base Score 5.3 (Con

CVE-2018-12031
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
74.8%
2018 0 PoCs

Local file inclusion in Eaton Intelligent Power Manager v1.6 allows an attacker to include a file via server/node_upgrade_srv.js directory traversal with the firmware parameter in a downloadFirmware action.