3722 vulnerabilidades · ⚡ Nuclei Orden: CVSS EPSS Año ID
CVE-2018-8727
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
52.3%
2018 0 PoCs

Path Traversal in Gateway in Mirasys DVMS Workstation 5.12.6 and earlier allows an attacker to traverse the file system to access files or directories via the Web Client webserver.

CVE-2018-13317
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
0.2%
2018 1 PoC

Password disclosure in password.htm in TOTOLINK A3002RU version 1.0.8 allows attackers to obtain the plaintext password for the admin user by making a GET request for password.htm.

CVE-2018-1000130
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
91.1%
2018 0 PoCs

A JNDI Injection vulnerability exists in Jolokia agent version 1.3.7 in the proxy mode that allows a remote attacker to run arbitrary Java code on the server.

CVE-2018-1217
Avamar, Integrated Data Protection Appliance General ⚡ nuclei
N/A
UNKNOWN
EPSS
65.9%
2018 1 PoC

Avamar Installation Manager in Dell EMC Avamar Server 7.3.1, 7.4.1, and 7.5.0, and Dell EMC Integrated Data Protection Appliance 2.0 and 2.1, is affected by a missing access control check vulnerability which could potentially allow a remote unauthenticated attacker to read or change the Local Download Service (LDLS) credentials. The LDLS credentials are used to connect to Dell EMC Online Support. If the LDLS configuration was changed to an invalid configuration, then Avamar Installation Manager may not be able to connect to Dell EMC Online Support web site successfully. The remote unauthentica

CVE-2018-19326
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
57.6%
2018 0 PoCs

Zyxel VMG1312-B10D devices before 5.13(AAXA.8)C0 allow ../ Directory Traversal, as demonstrated by reading /etc/passwd.

CVE-2018-8719
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
15.3%
2018 1 PoC

An issue was discovered in the WP Security Audit Log plugin 3.1.1 for WordPress. Access to wp-content/uploads/wp-security-audit-log/* files is not restricted. For example, these files are indexed by Google and allows for attackers to possibly find sensitive information.

CVE-2018-7467
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
30.0%
2018 0 PoCs

AxxonSoft Axxon Next has Directory Traversal via an initial /css//..%2f substring in a URI.

CVE-2018-14013
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
18.3%
2018 3 PoCs

Synacor Zimbra Collaboration Suite Collaboration before 8.8.11 has XSS in the AJAX and html web clients.

CVE-2018-11222
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
3.0%
2018 0 PoCs

Local File Inclusion (LFI) in Artica Pandora FMS through version 7.23 allows an attacker to call any php file via the /pandora_console/ajax.php ajax endpoint.

CVE-2018-6605
Software Genérico Web Database ⚡ nuclei
N/A
UNKNOWN
EPSS
91.0%
2018 1 PoC

SQL Injection exists in the Zh BaiduMap 3.0.0.1 component for Joomla! via the id parameter in a getPlacemarkDetails, getPlacemarkHoverText, getPathHoverText, or getPathDetails request.

CVE-2018-12296
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
73.1%
2018 1 PoC

Insufficient access control in /api/external/7.0/system.System.get_infos in Seagate NAS OS version 4.3.15.1 allows attackers to obtain information about the NAS without authentication via empty POST requests.

CVE-2018-15535
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
79.1%
2018 1 PoC

/filemanager/ajax_calls.php in tecrail Responsive FileManager before 9.13.4 uses external input to construct a pathname that should be within a restricted directory, but it does not properly neutralize get_file sequences such as ".." that can resolve to a location that is outside of that directory, aka Directory Traversal.

CVE-2018-2894
WebLogic Server Web Database ⚡ nuclei
N/A
UNKNOWN
EPSS
94.3%
2018 4 PoCs

Vulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent: WLS - Web Services). Supported versions that are affected are 12.1.3.0, 12.2.1.2 and 12.2.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle WebLogic Server. Successful attacks of this vulnerability can result in takeover of Oracle WebLogic Server. CVSS 3.0 Base Score 9.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).

CVE-2018-3714
node-srv node module General ⚡ nuclei
N/A
UNKNOWN
EPSS
72.6%
2018 CWE-22 1 PoC

node-srv node module suffers from a Path Traversal vulnerability due to lack of validation of url, which allows a malicious user to read content of any file with known path.

CVE-2018-12909
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
89.7%
2018 0 PoCs

Webgrind 1.5 relies on user input to display a file, which lets anyone view files from the local filesystem (that the webserver user has access to) via an index.php?op=fileviewer&file= URI. NOTE: the vendor indicates that the product is not intended for a "publicly accessible environment.

CVE-2018-20010
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
0.5%
2018 1 PoC

DomainMOD 4.11.01 has XSS via the assets/add/ssl-provider-account.php username field.

CVE-2018-15517
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
76.9%
2018 2 PoCs

The MailConnect feature on D-Link Central WiFiManager CWM-100 1.03 r0098 devices is intended to check a connection to an SMTP server but actually allows outbound TCP to any port on any IP address, leading to SSRF, as demonstrated by an index.php/System/MailConnect/host/127.0.0.1/port/22/secure/ URI.

CVE-2018-10141
Palo Alto Networks Web Networking ⚡ nuclei
N/A
UNKNOWN
EPSS
44.2%
2018 0 PoCs

GlobalProtect Portal Login page in Palo Alto Networks PAN-OS before 8.1.4 allows an unauthenticated attacker to inject arbitrary JavaScript or HTML.

CVE-2018-12613
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
94.3%
2018 7 PoCs

An issue was discovered in phpMyAdmin 4.8.x before 4.8.2, in which an attacker can include (view and potentially execute) files on the server. The vulnerability comes from a portion of code where pages are redirected and loaded within phpMyAdmin, and an improper test for whitelisted pages. An attacker must be authenticated, except in the "$cfg['AllowArbitraryServer'] = true" case (where an attacker can specify any host he/she is already in control of, and execute arbitrary code on phpMyAdmin) and the "$cfg['ServerDefault'] = 0" case (which bypasses the login requirement and runs the vulnerable

CVE-2018-10736
Software Genérico Web Database ⚡ nuclei
N/A
UNKNOWN
EPSS
83.2%
2018 0 PoCs

A SQL injection issue was discovered in Nagios XI before 5.4.13 via the admin/info.php key1 parameter.