3722 vulnerabilidades · ⚡ Nuclei Orden: CVSS EPSS Año ID
CVE-2024-9007
123solar Web ⚡ nuclei
5.3
MEDIUM
EPSS
3.7%
2024 CWE-79 0 PoCs

A vulnerability classified as problematic has been found in jeanmarc77 123solar 1.8.4.5. This affects an unknown part of the file /detailed.php. The manipulation of the argument date1 leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The patch is named 94bf9ab7ad0ccb7fbdc02f172f37f0e2ea08d48f. It is recommended to apply a patch to fix this issue.

CVE-2024-43283
Contest Gallery General ⚡ nuclei
5.3
MEDIUM
EPSS
15.6%
2024 CWE-201 0 PoCs

Insertion of Sensitive Information Into Sent Data vulnerability in Wasiliy Strecker / ContestGallery developer Contest Gallery contest-gallery.This issue affects Contest Gallery: from n/a through <= 23.1.2.

CVE-2024-45591
xwiki-platform Web ⚡ nuclei
5.3
MEDIUM
EPSS
86.2%
2024 CWE-862 0 PoCs

XWiki Platform is a generic wiki platform. The REST API exposes the history of any page in XWiki of which the attacker knows the name. The exposed information includes for each modification of the page the time of the modification, the version number, the author of the modification (both username and displayed name) and the version comment. This information is exposed regardless of the rights setup, and even when the wiki is configured to be fully private. On a private wiki, this can be tested by accessing /xwiki/rest/wikis/xwiki/spaces/Main/pages/WebHome/history, if this shows the history of

CVE-2024-6846
Chatbot with ChatGPT WordPress Web Windows ⚡ nuclei
5.3
MEDIUM
EPSS
6.3%
2024 1 PoC

The Chatbot with ChatGPT WordPress plugin before 2.4.5 does not validate access on some REST routes, allowing for an unauthenticated user to purge error and chat logs

CVE-2024-11396
Event Monster – Manager & Ticket Booking Web Windows ⚡ nuclei
5.3
MEDIUM
EPSS
54.2%
2024 CWE-359 1 PoC

The Event Monster – Event Management, Tickets Booking, Upcoming Event plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 1.4.3 via the Visitors List Export file. During the export, a CSV file is created in the wp-content folder with a hardcoded filename that is publicly accessible. This makes it possible for unauthenticated attackers to extract data about event visitors, that includes first and last names, email, and phone number.

CVE-2024-0593
Simple Job Board Web Windows ⚡ nuclei
5.3
MEDIUM
EPSS
6.7%
2024 CWE-862 0 PoCs

The Simple Job Board plugin for WordPress is vulnerable to unauthorized access of data| due to insufficient authorization checking on the fetch_quick_job() function in all versions up to, and including, 2.10.8. This makes it possible for unauthenticated attackers to fetch arbitrary posts, which can be password protected or private and contain sensitive information.

CVE-2024-22207
fastify-swagger-ui Web ⚡ nuclei
5.3
MEDIUM
EPSS
14.4%
2024 CWE-1188 0 PoCs

fastify-swagger-ui is a Fastify plugin for serving Swagger UI. Prior to 2.1.0, the default configuration of `@fastify/swagger-ui` without `baseDir` set will lead to all files in the module's directory being exposed via http routes served by the module. The vulnerability is fixed in v2.1.0. Setting the `baseDir` option can also work around this vulnerability.

CVE-2024-5333
The Events Calendar Web Windows ⚡ nuclei
5.3
MEDIUM
EPSS
11.0%
2024 1 PoC

The Events Calendar WordPress plugin before 6.8.2.1 is missing access checks in the REST API, allowing for unauthenticated users to access information about password protected events.

CVE-2024-8852
All-in-One WP Migration and Backup Web Windows ⚡ nuclei
5.3
MEDIUM
EPSS
10.1%
2024 CWE-200 0 PoCs

The All-in-One WP Migration and Backup plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 7.86 through publicly exposed log files. This makes it possible for unauthenticated attackers to view potentially sensitive information such as full paths contained in the exposed log files.

CVE-2024-7928
FastAdmin General ⚡ nuclei
5.3
MEDIUM
EPSS
91.8%
2024 CWE-22 6 PoCs

A vulnerability, which was classified as problematic, has been found in FastAdmin up to 1.3.3.20220121. Affected by this issue is some unknown functionality of the file /index/ajax/lang. The manipulation of the argument lang leads to path traversal. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 1.3.4.20220530 is able to address this issue. It is recommended to upgrade the affected component.

CVE-2024-6845
Chatbot with ChatGPT WordPress Web Windows ⚡ nuclei
5.3
MEDIUM
EPSS
21.6%
2024 1 PoC

The Chatbot with ChatGPT WordPress plugin before 2.4.6 does not have proper authorization in one of its REST endpoint, allowing unauthenticated users to retrieve the encoded key and then decode it, thereby leaking the OpenAI API key

CVE-2024-1209
LearnDash LMS Web Windows ⚡ nuclei
5.3
MEDIUM
EPSS
47.1%
2024 CWE-200 1 PoC

The LearnDash LMS plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 4.10.1 via direct file access due to insufficient protection of uploaded assignments. This makes it possible for unauthenticated attackers to obtain those uploads.

CVE-2024-7120
MSG1200 Web ⚡ nuclei
5.3
MEDIUM
EPSS
92.3%
2024 CWE-78 4 PoCs

A vulnerability, which was classified as critical, was found in Raisecom MSG1200, MSG2100E, MSG2200 and MSG2300 3.90. This affects an unknown part of the file list_base_config.php of the component Web Interface. The manipulation of the argument template leads to os command injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-272451.

CVE-2024-33113
Software Genérico Web ⚡ nuclei
5.3
MEDIUM
EPSS
52.9%
2024 2 PoCs

D-LINK DIR-845L <=v1.01KRb03 is vulnerable to Information disclosurey via bsc_sms_inbox.php.

CVE-2024-33939
Masteriyo - LMS General ⚡ nuclei
5.3
MEDIUM
EPSS
4.1%
2024 CWE-288 0 PoCs

Authentication Bypass Using an Alternate Path or Channel vulnerability in masteriyo Masteriyo - LMS learning-management-system.This issue affects Masteriyo - LMS: from n/a through <= 1.7.3.

CVE-2024-31223
fides Web ⚡ nuclei
5.3
MEDIUM
EPSS
7.9%
2024 CWE-497 0 PoCs

Fides is an open-source privacy engineering platform, and `SERVER_SIDE_FIDES_API_URL` is a server-side configuration environment variable used by the Fides Privacy Center to communicate with the Fides webserver backend. The value of this variable is a URL which typically includes a private IP address, private domain name, and/or port. A vulnerability present starting in version 2.19.0 and prior to version 2.39.2rc0 allows an unauthenticated attacker to make a HTTP GET request from the Privacy Center that discloses the value of this server-side URL. This could result in disclosure of server-sid

CVE-2024-3097
Photo Gallery, Sliders, Proofing and Themes – NextGEN Gallery Web Windows ⚡ nuclei
5.3
MEDIUM
EPSS
24.8%
2024 CWE-862 0 PoCs

The WordPress Gallery Plugin – NextGEN Gallery plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the get_item function in versions up to, and including, 3.59. This makes it possible for unauthenticated attackers to extract sensitive data including EXIF and other metadata of any image uploaded through the plugin.

CVE-2024-21645
pyload General ⚡ nuclei
5.3
MEDIUM
EPSS
71.3%
2024 CWE-74 0 PoCs

pyLoad is the free and open-source Download Manager written in pure Python. A log injection vulnerability was identified in `pyload` allowing any unauthenticated actor to inject arbitrary messages into the logs gathered by `pyload`. Forged or otherwise, corrupted log files can be used to cover an attacker’s tracks or even to implicate another party in the commission of a malicious act. This vulnerability has been patched in version 0.5.0b3.dev77.

CVE-2024-11305
Power Control Software Web Database ⚡ nuclei
5.3
MEDIUM
EPSS
46.5%
2024 CWE-89 0 PoCs

A vulnerability classified as critical was found in Altenergy Power Control Software up to 20241108. This vulnerability affects the function get_status_zigbee of the file /index.php/display/status_zigbee. The manipulation of the argument date leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.