550 vulnerabilidades · ⚡ Nuclei Orden: CVSS EPSS Año ID
CVE-2022-0271
LearnPress – WordPress LMS Plugin Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
4.2%
2022 CWE-79 1 PoC

The LearnPress WordPress plugin before 4.1.6 does not sanitise and escape the lp-dismiss-notice before outputting it back via the lp_background_single_email AJAX action, leading to a Reflected Cross-Site Scripting

CVE-2022-25061
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
86.0%
2022 1 PoC

TP-LINK TL-WR840N(ES)_V6.20_180709 was discovered to contain a command injection vulnerability via the component oal_setIp6DefaultRoute.

CVE-2022-24637
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
93.8%
2022 11 PoCs

Open Web Analytics (OWA) before 1.7.4 allows an unauthenticated remote attacker to obtain sensitive user information, which can be used to gain admin privileges by leveraging cache hashes. This occurs because files generated with '<?php (instead of the intended "<?php sequence) aren't handled by the PHP interpreter.

CVE-2022-37061
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
93.5%
2022 4 PoCs

All FLIR AX8 thermal sensor cameras version up to and including 1.46.16 are vulnerable to Remote Command Injection. This can be exploited to inject and execute arbitrary shell commands as the root user through the id HTTP POST parameter in the res.php endpoint. A successful exploit could allow the attacker to execute arbitrary commands on the underlying operating system with the root privileges. NOTE: The vendor has stated that with the introduction of firmware version 1.49.16 (Jan 2023) the FLIR AX8 should no longer be affected by the vulnerability reported. Latest firmware version (as of Oct

CVE-2022-30776
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
45.5%
2022 2 PoCs

atmail 6.5.0 allows XSS via the index.php/admin/index/ error parameter.

CVE-2022-0773
Documentor – Create Product Documentation Web Database Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
67.5%
2022 CWE-89 1 PoC

The Documentor WordPress plugin through 1.5.3 fails to sanitize and escape user input before it is being interpolated in an SQL statement and then executed, leading to an SQL Injection exploitable by unauthenticated users.

CVE-2022-34047
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
59.2%
2022 3 PoCs

An access control issue in Wavlink WN530HG4 M30HG4.V5030.191116 allows attackers to obtain usernames and passwords via view-source:http://IP_ADDRESS/set_safety.shtml?r=52300 and searching for [var syspasswd].

CVE-2022-38322
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
0.0%
2022 0 PoCs

Sin descripción disponible.

CVE-2022-30777
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
4.1%
2022 1 PoC

Parallels H-Sphere 3.6.1713 allows XSS via the index_en.php from parameter.

CVE-2022-28508
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
1.5%
2022 2 PoCs

An XSS issue was discovered in browser_search_plugin.php in MantisBT before 2.25.2. Unescaped output of the return parameter allows an attacker to inject code into a hidden input field.

CVE-2022-29078
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
93.5%
2022 6 PoCs

The ejs (aka Embedded JavaScript templates) package 3.1.6 for Node.js allows server-side template injection in settings[view options][outputFunctionName]. This is parsed as an internal option, and overwrites the outputFunctionName option with an arbitrary OS command (which is executed upon template compilation).

CVE-2022-0787
Limit Login Attempts (Spam Protection) Web Database Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
47.3%
2022 CWE-89 1 PoC

The Limit Login Attempts (Spam Protection) WordPress plugin before 5.1 does not sanitise and escape some parameters before using them in SQL statements via AJAX actions (available to unauthenticated users), leading to SQL Injections

CVE-2022-2383
Feed Them Social – for Twitter feed, Youtube and more Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
6.4%
2022 CWE-79 1 PoC

The Feed Them Social WordPress plugin before 3.0.1 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting

CVE-2022-26585
Software Genérico Web Database ⚡ nuclei
N/A
UNKNOWN
EPSS
48.2%
2022 1 PoC

Mingsoft MCMS v5.2.7 was discovered to contain a SQL injection vulnerability via /cms/content/list.

CVE-2022-28365
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
56.2%
2022 2 PoCs

Reprise License Manager 14.2 is affected by an Information Disclosure vulnerability via a GET request to /goforms/rlminfo. No authentication is required. The information disclosed is associated with software versions, process IDs, network configuration, hostname(s), system architecture, and file/directory details.

CVE-2022-47002
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
63.0%
2022 0 PoCs

A vulnerability in the Remember Me function of Masa CMS v7.2, 7.3, and 7.4-beta allows attackers to bypass authentication via a crafted web request.

CVE-2022-40734
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
91.7%
2022 0 PoCs

UniSharp laravel-filemanager (aka Laravel Filemanager) before 2.6.4 allows download?working_dir=%2F.. directory traversal to read arbitrary files, as exploited in the wild in June 2022. This is related to league/flysystem before 2.0.0.

CVE-2022-0827
Bestbooks Web Database Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
68.0%
2022 CWE-89 1 PoC

The Bestbooks WordPress plugin through 2.6.3 does not sanitise and escape some parameters before using them in a SQL statement via an AJAX action, leading to an SQL Injection exploitable by unauthenticated users

CVE-2022-2187
Contact Form 7 Captcha Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
2.7%
2022 CWE-79 1 PoC

The Contact Form 7 Captcha WordPress plugin before 0.1.2 does not escape the $_SERVER['REQUEST_URI'] parameter before outputting it back in an attribute, which could lead to Reflected Cross-Site Scripting in old web browsers

CVE-2022-0594
Professional Social Sharing Buttons, Icons & Related Posts – Shareaholic Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
44.0%
2022 CWE-863 1 PoC

The Professional Social Sharing Buttons, Icons & Related Posts WordPress plugin before 9.7.6 does not have proper authorisation check in one of the AJAX action, available to unauthenticated (in v < 9.7.5) and author+ (in v9.7.5) users, allowing them to call it and retrieve various information such as the list of active plugins, various version like PHP, cURL, WP etc.