3722 vulnerabilidades · ⚡ Nuclei Orden: CVSS EPSS Año ID
CVE-2018-11133
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
0.0%
2018 1 PoC

The 'fmt' parameter of the '/common/run_cross_report.php' script in the the Quest KACE System Management Appliance 8.0.318 is vulnerable to cross-site scripting.

CVE-2018-1207
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
93.8%
2018 3 PoCs

Dell EMC iDRAC7/iDRAC8, versions prior to 2.52.52.52, contain CGI injection vulnerability which could be used to execute remote code. A remote unauthenticated attacker may potentially be able to use CGI variables to execute remote code.

CVE-2018-14912
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
91.5%
2018 1 PoC

cgit_clone_objects in CGit before 1.2.1 has a directory traversal vulnerability when `enable-http-clone=1` is not turned off, as demonstrated by a cgit/cgit.cgi/git/objects/?path=../ request.

CVE-2018-16668
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
52.2%
2018 1 PoC

An issue was discovered in CIRCONTROL CirCarLife before 4.3. There is internal installation path disclosure due to the lack of authentication for /html/repository.

CVE-2018-17254
Software Genérico Web Database ⚡ nuclei
N/A
UNKNOWN
EPSS
85.2%
2018 3 PoCs

The JCK Editor component 6.4.4 for Joomla! allows SQL Injection via the jtreelink/dialogs/links.php parent parameter.

CVE-2018-11759
Apache Tomcat Connectors Web ⚡ nuclei
N/A
UNKNOWN
EPSS
94.2%
2018 4 PoCs

The Apache Web Server (httpd) specific code that normalised the requested path before matching it to the URI-worker map in Apache Tomcat JK (mod_jk) Connector 1.2.0 to 1.2.44 did not handle some edge cases correctly. If only a sub-set of the URLs supported by Tomcat were exposed via httpd, then it was possible for a specially constructed request to expose application functionality through the reverse proxy that was not intended for clients accessing the application via the reverse proxy. It was also possible in some configurations for a specially constructed request to bypass the access contro

CVE-2018-1000226
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
60.0%
2018 1 PoC

Cobbler version Verified as present in Cobbler versions 2.6.11+, but code inspection suggests at least 2.0.0+ or possibly even older versions may be vulnerable contains a Incorrect Access Control vulnerability in XMLRPC API (/cobbler_api) that can result in Privilege escalation, data manipulation or exfiltration, LDAP credential harvesting. This attack appear to be exploitable via "network connectivity". Taking advantage of improper validation of security tokens in API endpoints. Please note this is a different issue than CVE-2018-10931.

CVE-2018-19365
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
87.1%
2018 0 PoCs

The REST API in Wowza Streaming Engine 4.7.4.01 allows traversal of the directory structure and retrieval of a file via a remote, specifically crafted HTTP request.

CVE-2018-13980
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
14.7%
2018 2 PoCs

The websites that were built from Zeta Producer Desktop CMS before 14.2.1 are vulnerable to unauthenticated file disclosure if the plugin "filebrowser" is installed, because of assets/php/filebrowser/filebrowser.main.php?file=../ directory traversal.

CVE-2018-5233
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
18.8%
2018 2 PoCs

Cross-site scripting (XSS) vulnerability in system/src/Grav/Common/Twig/Twig.php in Grav CMS before 1.3.0 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to admin/tools.

CVE-2018-10383
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
1.8%
2018 0 PoCs

Lantronix SecureLinx Spider (SLS) 2.2+ devices have XSS in the auth.asp login page.

CVE-2018-18778
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
93.2%
2018 2 PoCs

ACME mini_httpd before 1.30 lets remote users read arbitrary files.

CVE-2018-14474
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
1.6%
2018 0 PoCs

views/auth.go in Orange Forum 1.4.0 allows Open Redirection via the next parameter to /login or /signup.

CVE-2018-16133
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
57.5%
2018 1 PoC

Cybrotech CyBroHttpServer 1.0.3 allows Directory Traversal via a ../ in the URI.

CVE-2018-16167
LogonTracer General ⚡ nuclei
N/A
UNKNOWN
EPSS
87.0%
2018 1 PoC

LogonTracer 1.2.0 and earlier allows remote attackers to execute arbitrary OS commands via unspecified vectors.

CVE-2018-16671
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
42.5%
2018 1 PoC

An issue was discovered in CIRCONTROL CirCarLife before 4.3. There is system software information disclosure due to lack of authentication for /html/device-id.

CVE-2018-17207
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
91.2%
2018 1 PoC

An issue was discovered in Snap Creek Duplicator before 1.2.42. By accessing leftover installer files (installer.php and installer-backup.php), an attacker can inject PHP code into wp-config.php during the database setup step, achieving arbitrary code execution.

CVE-2018-7282
Software Genérico Database ⚡ nuclei
N/A
UNKNOWN
EPSS
68.8%
2018 0 PoCs

The username parameter of the TITool PrintMonitor solution during the login request is vulnerable to and/or time-based blind SQLi.

CVE-2018-17422
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
10.8%
2018 0 PoCs

dotCMS before 5.0.2 has open redirects via the html/common/forward_js.jsp FORWARD_URL parameter or the html/portlet/ext/common/page_preview_popup.jsp hostname parameter.

CVE-2018-7719
Software Genérico Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
86.8%
2018 1 PoC

Acrolinx Server before 5.2.5 on Windows allows Directory Traversal.