212 vulnerabilidades · ⚡ Nuclei Orden: CVSS EPSS Año ID
CVE-2019-16997
Software Genérico Web Database ⚡ nuclei
N/A
UNKNOWN
EPSS
93.7%
2019 0 PoCs

In Metinfo 7.0.0beta, a SQL Injection was discovered in app/system/language/admin/language_general.class.php via the admin/?n=language&c=language_general&a=doExportPack appno parameter.

CVE-2019-9915
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
14.0%
2019 0 PoCs

GetSimpleCMS 3.3.13 has an Open Redirect via the admin/index.php redirect parameter.

CVE-2019-19368
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
75.6%
2019 1 PoC

A Reflected Cross Site Scripting was discovered in the Login page of Rumpus FTP Web File Manager 8.2.9.1. An attacker can exploit it by sending a crafted link to end users and can execute arbitrary Javascripts

CVE-2019-6802
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
1.3%
2019 0 PoCs

CRLF Injection in pypiserver 1.2.5 and below allows attackers to set arbitrary HTTP headers and possibly conduct XSS attacks via a %0d%0a in a URI.

CVE-2019-20504
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
55.8%
2019 0 PoCs

service/krashrpt.php in Quest KACE K1000 Systems Management Appliance before 6.4 SP3 (6.4.120822) allows a remote attacker to execute code via shell metacharacters in the kuid parameter.

CVE-2019-0232
Tomcat Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
94.2%
2019 23 PoCs

When running on Windows with enableCmdLineArguments enabled, the CGI Servlet in Apache Tomcat 9.0.0.M1 to 9.0.17, 8.5.0 to 8.5.39 and 7.0.0 to 7.0.93 is vulnerable to Remote Code Execution due to a bug in the way the JRE passes command line arguments to Windows. The CGI Servlet is disabled by default. The CGI option enableCmdLineArguments is disable by default in Tomcat 9.0.x (and will be disabled by default in all versions in response to this vulnerability). For a detailed explanation of the JRE behaviour, see Markus Wulftange's blog (https://codewhitesec.blogspot.com/2016/02/java-and-command

CVE-2019-7219
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
14.9%
2019 1 PoC

Unauthenticated reflected cross-site scripting (XSS) exists in Zarafa Webapp 2.0.1.47791 and earlier. NOTE: this is a discontinued product. The issue was fixed in later Zarafa Webapp versions; however, some former Zarafa Webapp customers use the related Kopano product instead.

CVE-2019-8446
Jira General ⚡ nuclei
N/A
UNKNOWN
EPSS
72.9%
2019 CWE-863 2 PoCs

The /rest/issueNav/1/issueTable resource in Jira before version 8.3.2 allows remote attackers to enumerate usernames via an incorrect authorisation check.

CVE-2019-9041
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
88.2%
2019 1 PoC

An issue was discovered in ZZZCMS zzzphp V1.6.1. In the inc/zzz_template.php file, the parserIfLabel() function's filtering is not strict, resulting in PHP code execution, as demonstrated by the if:assert substring.

CVE-2019-7254
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
90.6%
2019 1 PoC

Linear eMerge E3-Series devices allow File Inclusion.

CVE-2019-7255
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
57.6%
2019 1 PoC

Linear eMerge E3-Series devices allow XSS.

CVE-2019-13396
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
68.6%
2019 2 PoCs

FlightPath 4.x and 5.0-x allows directory traversal and Local File Inclusion through the form_include parameter in an index.php?q=system-handle-form-submit POST request because of an include_once in system_handle_form_submit in modules/system/system.module.

CVE-2019-2767
BI Publisher (formerly XML Publisher) Web Database ⚡ nuclei
N/A
UNKNOWN
EPSS
49.9%
2019 1 PoC

Vulnerability in the BI Publisher (formerly XML Publisher) component of Oracle Fusion Middleware (subcomponent: BI Publisher Security). The supported version that is affected are 11.1.1.9.0, 12.2.1.3.0 and 12.2.1.4.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise BI Publisher (formerly XML Publisher). While the vulnerability is in BI Publisher (formerly XML Publisher), attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of B

CVE-2019-8451
Jira General ⚡ nuclei
N/A
UNKNOWN
EPSS
93.3%
2019 4 PoCs

The /plugins/servlet/gadgets/makeRequest resource in Jira before version 8.4.0 allows remote attackers to access the content of internal network resources via a Server Side Request Forgery (SSRF) vulnerability due to a logic bug in the JiraWhitelist class.

CVE-2019-17503
Software Genérico Database ⚡ nuclei
N/A
UNKNOWN
EPSS
90.2%
2019 1 PoC

An issue was discovered in Kirona Dynamic Resource Scheduling (DRS) 5.5.3.5. An unauthenticated user can access /osm/REGISTER.cmd (aka /osm_tiles/REGISTER.cmd) directly: it contains sensitive information about the database through the SQL queries within this batch file. This file exposes SQL database information such as database version, table name, column name, etc.

CVE-2019-15043
Software Genérico DevOps Web ⚡ nuclei
N/A
UNKNOWN
EPSS
90.9%
2019 2 PoCs

In Grafana 2.x through 6.x before 6.3.4, parts of the HTTP API allow unauthenticated use. This makes it possible to run a denial of service attack against the server running Grafana.

CVE-2019-9733
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
91.7%
2019 2 PoCs

An issue was discovered in JFrog Artifactory 6.7.3. By default, the access-admin account is used to reset the password of the admin account in case an administrator gets locked out from the Artifactory console. This is only allowable from a connection directly from localhost, but providing a X-Forwarded-For HTTP header to the request allows an unauthenticated user to login with the default credentials of the access-admin account while bypassing the whitelist of allowed IP addresses. The access-admin account can use Artifactory's API to request authentication tokens for all users including the

CVE-2019-12314
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
91.5%
2019 2 PoCs

Deltek Maconomy 2.2.5 is prone to local file inclusion via absolute path traversal in the WS.macx1.W_MCS/ PATH_INFO, as demonstrated by a cgi-bin/Maconomy/MaconomyWS.macx1.W_MCS/etc/passwd URI.

CVE-2019-20141
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
12.5%
2019 1 PoC

An XSS issue was discovered in the Laborator Neon theme 2.0 for WordPress via the data/autosuggest-remote.php q parameter.

CVE-2019-8982
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
85.7%
2019 1 PoC

com/wavemaker/studio/StudioService.java in WaveMaker Studio 6.6 mishandles the studioService.download?method=getContent&inUrl= value, leading to disclosure of local files and SSRF.