550 vulnerabilidades · ⚡ Nuclei Orden: CVSS EPSS Año ID
CVE-2022-22956
VMware Workspace ONE Access General ⚡ nuclei
N/A
UNKNOWN
EPSS
84.9%
2022 2 PoCs

VMware Workspace ONE Access has two authentication bypass vulnerabilities (CVE-2022-22955 & CVE-2022-22956) in the OAuth2 ACS framework. A malicious actor may bypass the authentication mechanism and execute any operation due to exposed endpoints in the authentication framework.

CVE-2022-0149
WooCommerce – Store Exporter Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
1.1%
2022 CWE-79 1 PoC

The WooCommerce Stored Exporter WordPress plugin before 2.7.1 was affected by a Reflected Cross-Site Scripting (XSS) vulnerability in the woo_ce admin page.

CVE-2022-34046
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
57.5%
2022 2 PoCs

An access control issue in Wavlink WN533A8 M33A8.V5030.190716 allows attackers to obtain usernames and passwords via view-source:http://IP_ADDRESS/sysinit.shtml?r=52300 and searching for [logincheck(user);].

CVE-2022-0212
SpiderCalendar Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
1.2%
2022 CWE-79 1 PoC

The SpiderCalendar WordPress plugin through 1.5.65 does not sanitise and escape the callback parameter before outputting it back in the page via the window AJAX action (available to both unauthenticated and authenticated users), leading to a Reflected Cross-Site Scripting issue.

CVE-2022-25323
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
10.7%
2022 0 PoCs

ZEROF Web Server 2.0 allows /admin.back XSS.

CVE-2022-0220
WordPress GDPR Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
3.1%
2022 1 PoC

The check_privacy_settings AJAX action of the WordPress GDPR WordPress plugin before 1.9.27, available to both unauthenticated and authenticated users, responds with JSON data without an "application/json" content-type. Since an HTML payload isn't properly escaped, it may be interpreted by a web browser led to this endpoint. Javascript code may be executed on a victim's browser. Due to v1.9.26 adding a CSRF check, the XSS is only exploitable against unauthenticated users (as they all share the same nonce)

CVE-2022-0288
Ad Inserter – Ad Manager & AdSense Ads Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
2.2%
2022 CWE-79 1 PoC

The Ad Inserter WordPress plugin before 2.7.10, Ad Inserter Pro WordPress plugin before 2.7.10 do not sanitise and escape the html_element_selection parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting

CVE-2022-37191
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
32.5%
2022 0 PoCs

The component "cuppa/api/index.php" of CuppaCMS v1.0 is Vulnerable to LFI. An authenticated user can read system files via crafted POST request using [function] parameter value as LFI payload.

CVE-2022-29006
Software Genérico Database ⚡ nuclei
N/A
UNKNOWN
EPSS
87.4%
2022 2 PoCs

Multiple SQL injection vulnerabilities via the username and password parameters in the Admin panel of Directory Management System v1.0 allows attackers to bypass authentication.

CVE-2022-32025
Software Genérico Web Database ⚡ nuclei
N/A
UNKNOWN
EPSS
11.8%
2022 0 PoCs

Car Rental Management System v1.0 is vulnerable to SQL Injection via /car-rental-management-system/admin/view_car.php?id=.

CVE-2022-35413
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
86.0%
2022 2 PoCs

WAPPLES through 6.0 has a hardcoded systemi account. A threat actor could use this account to access the system configuration and confidential information (such as SSL keys) via an HTTPS request to the /webapi/ URI on port 443 or 5001.

CVE-2022-23348
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
1.2%
2022 1 PoC

BigAnt Software BigAnt Server v5.6.06 was discovered to utilize weak password hashes.

CVE-2022-1390
Admin Word Count Column Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
91.1%
2022 CWE-22 2 PoCs

The Admin Word Count Column WordPress plugin through 2.2 does not validate the path parameter given to readfile(), which could allow unauthenticated attackers to read arbitrary files on server running old version of PHP susceptible to the null byte technique. This could also lead to RCE by using a Phar Deserialization technique

CVE-2022-25485
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
37.1%
2022 0 PoCs

CuppaCMS v1.0 was discovered to contain a local file inclusion via the url parameter in /alerts/alertLightbox.php.

CVE-2022-28290
WordPress Country Selector Plugin Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
1.9%
2022 CWE-79 1 PoC

Reflective Cross-Site Scripting vulnerability in WordPress Country Selector Plugin Version 1.6.5. The XSS payload executes whenever the user tries to access the country selector page with the specified payload as a part of the HTTP request

CVE-2022-37153
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
4.4%
2022 1 PoC

An issue was discovered in Artica Proxy 4.30.000000. There is a XSS vulnerability via the password parameter in /fw.login.php.

CVE-2022-1946
Gallery – Image and Video Gallery with Thumbnails Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
0.9%
2022 CWE-79 1 PoC

The Gallery WordPress plugin before 2.0.0 does not sanitise and escape a parameter before outputting it back in the response of an AJAX action (available to both unauthenticated and authenticated users), leading to a Reflected Cross-Site Scripting issue

CVE-2022-2219
Unyson Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
6.6%
2022 CWE-79 1 PoC

The Unyson WordPress plugin before 2.7.27 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting

CVE-2022-0429
WP Cerber Security, Anti-spam & Malware Scan Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
0.4%
2022 CWE-79 1 PoC

The WP Cerber Security, Anti-spam & Malware Scan WordPress plugin before 8.9.6 does not sanitise the $url variable before using it in an attribute in the Activity tab in the plugins dashboard, leading to an unauthenticated stored Cross-Site Scripting vulnerability.

CVE-2022-38812
Software Genérico Web Database ⚡ nuclei
N/A
UNKNOWN
EPSS
9.4%
2022 1 PoC

AeroCMS 0.1.1 is vulnerable to SQL Injection via the author parameter.