3722 vulnerabilidades · ⚡ Nuclei Orden: CVSS EPSS Año ID
CVE-2018-19753
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
77.2%
2018 2 PoCs

Tarantella Enterprise before 3.11 allows Directory Traversal.

CVE-2018-10823
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
93.9%
2018 2 PoCs

An issue was discovered on D-Link DWR-116 through 1.06, DWR-512 through 2.02, DWR-712 through 2.02, DWR-912 through 2.02, DWR-921 through 2.02, and DWR-111 through 1.01 devices. An authenticated attacker may execute arbitrary code by injecting the shell command into the chkisg.htm page Sip parameter. This allows for full control over the device internals.

CVE-2018-14728
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
90.7%
2018 2 PoCs

upload.php in Responsive FileManager 9.13.1 allows SSRF via the url parameter.

CVE-2018-12095
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
12.7%
2018 2 PoCs

A Reflected Cross-Site Scripting web vulnerability has been discovered in the OEcms v3.1 web-application. The vulnerability is located in the mod parameter of info.php.

CVE-2018-11409
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
92.2%
2018 1 PoC

Splunk through 7.0.1 allows information disclosure by appending __raw/services/server/info/server-info?output_mode=json to a query, as demonstrated by discovering a license key.

CVE-2018-8033
Apache OFBiz Web ⚡ nuclei
N/A
UNKNOWN
EPSS
92.2%
2018 1 PoC

In Apache OFBiz 16.11.01 to 16.11.04, the OFBiz HTTP engine (org.apache.ofbiz.service.engine.HttpEngine.java) handles requests for HTTP services via the /webtools/control/httpService endpoint. Both POST and GET requests to the httpService endpoint may contain three parameters: serviceName, serviceMode, and serviceContext. The exploitation occurs by having DOCTYPEs pointing to external references that trigger a payload that returns secret information from the host.

CVE-2018-10093
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
66.8%
2018 2 PoCs

AudioCodes IP phone 420HD devices using firmware version 2.2.12.126 allow Remote Code Execution.

CVE-2018-14574
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
12.8%
2018 0 PoCs

django.middleware.common.CommonMiddleware in Django 1.11.x before 1.11.15 and 2.0.x before 2.0.8 has an Open Redirect.

CVE-2018-1000856
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
1.0%
2018 0 PoCs

DomainMOD version 4.09.03 and above. Also verified in the latest version 4.11.01 contains a Cross Site Scripting (XSS) vulnerability in Segment Name field in the segments page that can result in Arbitrary script can be executed on all users browsers who visit the affected page. This attack appear to be exploitable via Victim must visit the vulnerable page. This vulnerability appears to have been fixed in No fix yet.

CVE-2018-16059
Software Genérico Networking ⚡ nuclei
N/A
UNKNOWN
EPSS
37.1%
2018 2 PoCs

Endress+Hauser WirelessHART Fieldgate SWG70 3.x devices allow Directory Traversal via the fcgi-bin/wgsetcgi filename parameter.

CVE-2018-20011
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
0.5%
2018 1 PoC

DomainMOD 4.11.01 has XSS via the assets/add/category.php Category Name or Stakeholder field.

CVE-2018-11686
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
92.6%
2018 1 PoC

The Publish Service in FlexPaper (later renamed FlowPaper) 2.3.6 allows remote code execution via setup.php and change_config.php.

CVE-2018-3760
Sprockets General ⚡ nuclei
N/A
UNKNOWN
EPSS
93.9%
2018 CWE-22 4 PoCs

There is an information leak vulnerability in Sprockets. Versions Affected: 4.0.0.beta7 and lower, 3.7.1 and lower, 2.12.4 and lower. Specially crafted requests can be used to access files that exists on the filesystem that is outside an application's root directory, when the Sprockets server is used in production. All users running an affected release should either upgrade or use one of the work arounds immediately.

CVE-2018-20470
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
82.2%
2018 2 PoCs

An issue was discovered in Tyto Sahi Pro through 7.x.x and 8.0.0. A directory traversal (arbitrary file access) vulnerability exists in the web reports module. This allows an outside attacker to view contents of sensitive files.

CVE-2018-12054
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
85.5%
2018 1 PoC

Arbitrary File Read exists in PHP Scripts Mall Schools Alert Management Script via the f parameter in img.php, aka absolute path traversal.

CVE-2018-7314
Software Genérico Web Database ⚡ nuclei
N/A
UNKNOWN
EPSS
90.8%
2018 1 PoC

SQL Injection exists in the PrayerCenter 3.0.2 component for Joomla! via the sessionid parameter, a different vulnerability than CVE-2008-6429.

CVE-2018-15917
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
0.6%
2018 2 PoCs

Persistent cross-site scripting (XSS) issues in Jorani 0.6.5 allow remote attackers to inject arbitrary web script or HTML via the language parameter to session/language.

CVE-2018-7196
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
0.5%
2018 1 PoC

Cross-site scripting (XSS) vulnerability in /scp/index.php in Enhancesoft osTicket before 1.10.2 allows remote attackers to inject arbitrary web script or HTML via the "sort" parameter.

CVE-2018-8006
Apache ActiveMQ Web ⚡ nuclei
N/A
UNKNOWN
EPSS
78.5%
2018 0 PoCs

An instance of a cross-site scripting vulnerability was identified to be present in the web based administration console on the queue.jsp page of Apache ActiveMQ versions 5.0.0 to 5.15.5. The root cause of this issue is improper data filtering of the QueueFilter parameter.