3722 vulnerabilidades · ⚡ Nuclei Orden: CVSS EPSS Año ID
CVE-2018-19877
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
12.5%
2018 1 PoC

login.php in Adiscon LogAnalyzer before 4.1.7 has XSS via the Login Button Referer field.

CVE-2018-1335
Apache Tika Web ⚡ nuclei
N/A
UNKNOWN
EPSS
93.9%
2018 8 PoCs

From Apache Tika versions 1.7 to 1.17, clients could send carefully crafted headers to tika-server that could be used to inject commands into the command line of the server running tika-server. This vulnerability only affects those running tika-server on a server that is open to untrusted clients. The mitigation is to upgrade to Tika 1.18.

CVE-2018-7653
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
1.1%
2018 2 PoCs

In YzmCMS 3.6, index.php has XSS via the a, c, or m parameter.

CVE-2018-8770
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
58.0%
2018 1 PoC

Physical path Leakage exists in Western Bridge Cobub Razor 0.8.0 via generate.php, controllers/getConfigTest.php, controllers/getUpdateTest.php, controllers/postclientdataTest.php, controllers/posterrorTest.php, controllers/posteventTest.php, controllers/posttagTest.php, controllers/postusinglogTest.php, fixtures/Controller_fixt.php, fixtures/Controller_fixt2.php, fixtures/view_fixt2.php, libs/ipTest.php, or models/commonDbfix.php in tests/.

CVE-2018-18264
Software Genérico DevOps ⚡ nuclei
N/A
UNKNOWN
EPSS
90.8%
2018 0 PoCs

Kubernetes Dashboard before 1.10.1 allows attackers to bypass authentication and use Dashboard's Service Account for reading secrets within the cluster.

CVE-2018-1000129
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
76.8%
2018 1 PoC

An XSS vulnerability exists in the Jolokia agent version 1.3.7 in the HTTP servlet that allows an attacker to execute malicious javascript in the victim's browser.

CVE-2018-20462
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
9.1%
2018 1 PoC

An issue was discovered in the JSmol2WP plugin 1.07 for WordPress. A cross-site scripting (XSS) vulnerability allows remote attackers to inject arbitrary web script or HTML via the jsmol.php data parameter.

CVE-2018-16670
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
45.6%
2018 1 PoC

An issue was discovered in CIRCONTROL CirCarLife before 4.3. There is PLC status disclosure due to lack of authentication for /html/devstat.html.

CVE-2018-10201
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
81.4%
2018 2 PoCs

An issue was discovered in NcMonitorServer.exe in NC Monitor Server in NComputing vSpace Pro 10 and 11. It is possible to read arbitrary files outside the root directory of the web server. This vulnerability could be exploited remotely by a crafted URL without credentials, with .../ or ...\ or ..../ or ....\ as a directory-traversal pattern to TCP port 8667.

CVE-2018-17283
Software Genérico Web Networking Database ⚡ nuclei
N/A
UNKNOWN
EPSS
8.2%
2018 0 PoCs

Zoho ManageEngine OpManager before 12.3 Build 123196 does not require authentication for /oputilsServlet requests, as demonstrated by a /oputilsServlet?action=getAPIKey request that can be leveraged against Firewall Analyzer to add an admin user via /api/json/v2/admin/addUser or conduct a SQL Injection attack via the /api/json/device/setManaged name parameter.

CVE-2018-17246
Kibana Web ⚡ nuclei
N/A
UNKNOWN
EPSS
93.8%
2018 CWE-73 2 PoCs

Kibana versions before 6.4.3 and 5.6.13 contain an arbitrary file inclusion flaw in the Console plugin. An attacker with access to the Kibana Console API could send a request that will attempt to execute javascript code. This could possibly lead to an attacker executing arbitrary commands with permissions of the Kibana process on the host system.

CVE-2018-1000671
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
0.6%
2018 0 PoCs

sympa version 6.2.16 and later contains a CWE-601: URL Redirection to Untrusted Site ('Open Redirect') vulnerability in The "referer" parameter of the wwsympa.fcgi login action. that can result in Open redirection and reflected XSS via data URIs. This attack appear to be exploitable via Victim's browser must follow a URL supplied by the attacker. This vulnerability appears to have been fixed in none available.

CVE-2018-18570
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
6.4%
2018 0 PoCs

Planon before Live Build 41 has XSS.

CVE-2018-17082
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
4.4%
2018 2 PoCs

The Apache2 component in PHP before 5.6.38, 7.0.x before 7.0.32, 7.1.x before 7.1.22, and 7.2.x before 7.2.10 allows XSS via the body of a "Transfer-Encoding: chunked" request, because the bucket brigade is mishandled in the php_handler function in sapi/apache2handler/sapi_apache2.c.

CVE-2018-7422
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
89.6%
2018 7 PoCs

A Local File Inclusion vulnerability in the Site Editor plugin through 1.1.1 for WordPress allows remote attackers to retrieve arbitrary files via the ajax_path parameter to editor/extensions/pagebuilder/includes/ajax_shortcode_pattern.php, aka absolute path traversal.

CVE-2018-10738
Software Genérico Web Database ⚡ nuclei
N/A
UNKNOWN
EPSS
66.9%
2018 0 PoCs

A SQL injection issue was discovered in Nagios XI before 5.4.13 via the admin/menuaccess.php chbKey1 parameter.

CVE-2018-16761
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
1.4%
2018 0 PoCs

Eventum before 3.4.0 has an open redirect vulnerability.

CVE-2018-11784
Apache Tomcat Web ⚡ nuclei
N/A
UNKNOWN
EPSS
82.6%
2018 9 PoCs

When the default servlet in Apache Tomcat versions 9.0.0.M1 to 9.0.11, 8.5.0 to 8.5.33 and 7.0.23 to 7.0.90 returned a redirect to a directory (e.g. redirecting to '/foo/' when the user requested '/foo') a specially crafted URL could be used to cause the redirect to be generated to any URI of the attackers choice.

CVE-2018-7192
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
0.4%
2018 1 PoC

Cross-site scripting (XSS) vulnerability in /ajax.php/form/help-topic in Enhancesoft osTicket before 1.10.2 allows remote attackers to inject arbitrary web script or HTML via the "message" parameter.

CVE-2018-9845
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
77.2%
2018 0 PoCs

Etherpad Lite before 1.6.4 is exploitable for admin access.