7695 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2020-13499
Aveva Database
9.8
CRITICAL
EPSS
0.3%
2020 CWE-89 1 PoC

An SQL injection vulnerability exists in the CHaD.asmx web service functionality of eDNA Enterprise Data Historian 3.0.1.2/7.5.4989.33053. Specially crafted SOAP web requests can cause SQL injections resulting in data compromise. Parameter InstancePath in CHaD.asmx is vulnerable to unauthenticated SQL injection attacks.

CVE-2020-11176
Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile Web
9.8
CRITICAL
EPSS
0.2%
2020 1 PoC

While processing server certificate from IPSec server, certificate validation for subject alternative name API can cause heap overflow which can lead to memory corruption in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile

CVE-2020-7714
confucious General
9.8
CRITICAL
EPSS
0.4%
2020 2 PoCs

All versions of package confucious are vulnerable to Prototype Pollution via the set function.

CVE-2020-22820
Software Genérico Web Database
9.8
CRITICAL
EPSS
0.3%
2020 2 PoCs

MKCMS V6.2 has SQL injection via the /ucenter/repass.php name parameter.

CVE-2020-6064
Accusoft General
9.8
CRITICAL
EPSS
2.2%
2020 1 PoC

An exploitable out-of-bounds write vulnerability exists in the uncompress_scan_line function of the igcore19d.dll library of Accusoft ImageGear, version 19.5.0. A specially crafted PCX file can cause an out-of-bounds write, resulting in a remote code execution. An attacker needs to provide a malformed file to the victim to trigger the vulnerability.

CVE-2020-22818
Software Genérico Web Database
9.8
CRITICAL
EPSS
0.3%
2020 2 PoCs

MKCMS V6.2 has SQL injection via /ucenter/reg.php name parameter.

CVE-2020-4854
Spectrum Protect Plus General
9.8
CRITICAL
EPSS
0.2%
2020 1 PoC

IBM Spectrum Protect Plus 10.1.0 thorugh 10.1.6 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data. IBM X-Force ID: 190454.

CVE-2020-28445
npm-help General
9.8
CRITICAL
EPSS
0.5%
2020 2 PoCs

This affects all versions of package npm-help. The injection point is located in line 13 in index.js file in export.latestVersion() function.

CVE-2020-10189
🔥 KEV Software Genérico General ⚡ nuclei
9.8
CRITICAL
EPSS
94.2%
2020 6 PoCs

Zoho ManageEngine Desktop Central before 10.0.474 allows remote code execution because of deserialization of untrusted data in getChartImage in the FileStorage class. This is related to the CewolfServlet and MDMLogUploaderServlet servlets.

CVE-2020-7784
ts-process-promises General
9.8
CRITICAL
EPSS
0.5%
2020 1 PoC

This affects all versions of package ts-process-promises. The injection point is located in line 45 in main entry of package in lib/process-promises.js. The vulnerability is demonstrated with the following PoC:

CVE-2020-3249
Cisco UCS Director Web Networking
9.8
CRITICAL
EPSS
26.2%
2020 CWE-20 1 PoC

Multiple vulnerabilities in the REST API of Cisco UCS Director and Cisco UCS Director Express for Big Data may allow a remote attacker to bypass authentication or conduct directory traversal attacks on an affected device. For more information about these vulnerabilities, see the Details section of this advisory.

CVE-2020-2791
Knowledge Web Database
9.8
CRITICAL
EPSS
1.6%
2020 1 PoC

Vulnerability in the Oracle Knowledge product of Oracle Knowledge (component: Information Manager Console). Supported versions that are affected are 8.6.0-8.6.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Knowledge. Successful attacks of this vulnerability can result in takeover of Oracle Knowledge. CVSS 3.0 Base Score 9.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).

CVE-2020-6075
Accusoft General
9.8
CRITICAL
EPSS
1.4%
2020 1 PoC

An exploitable out-of-bounds write vulnerability exists in the store_data_buffer function of the igcore19d.dll library of Accusoft ImageGear 19.5.0. A specially crafted PNG file can cause an out-of-bounds write, resulting in a remote code execution. An attacker needs to provide a malformed file to the victim to trigger the vulnerability.

CVE-2020-26629
Software Genérico General
9.8
CRITICAL
EPSS
1.0%
2020 1 PoC

A JQuery Unrestricted Arbitrary File Upload vulnerability was discovered in Hospital Management System V4.0 which allows an unauthenticated attacker to upload any file to the server.

CVE-2020-7718
gammautils General
9.8
CRITICAL
EPSS
0.4%
2020 2 PoCs

All versions of package gammautils are vulnerable to Prototype Pollution via the deepSet and deepMerge functions.

CVE-2020-7720
node-forge General
9.8
CRITICAL
EPSS
2.1%
2020 4 PoCs

The package node-forge before 0.10.0 is vulnerable to Prototype Pollution via the util.setPath function. Note: Version 0.10.0 is a breaking change removing the vulnerable functions.

CVE-2020-14645
WebLogic Server Database
9.8
CRITICAL
EPSS
92.3%
2020 6 PoCs

Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 10.3.6.0.0, 12.1.3.0.0, 12.2.1.3.0, 12.2.1.4.0 and 14.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via IIOP, T3 to compromise Oracle WebLogic Server. Successful attacks of this vulnerability can result in takeover of Oracle WebLogic Server. CVSS 3.1 Base Score 9.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).

CVE-2020-23591
Software Genérico General
9.8
CRITICAL
EPSS
0.8%
2020 2 PoCs

A vulnerability in OPTILINK OP-XT71000N Hardware Version: V2.2 , Firmware Version: OP_V3.3.1-191028 allows an attacker to upload arbitrary files through " /mgm_dev_upgrade.asp " which can "delete every file for Denial of Service (using 'rm -rf *.*' in the code), reverse connection (using '.asp' webshell), backdoor.

CVE-2020-21016
Software Genérico Web
9.8
CRITICAL
EPSS
10.4%
2020 2 PoCs

D-Link DIR-846 devices with firmware 100A35 allow remote attackers to execute arbitrary code as root via HNAP1/control/SetGuestWLanSettings.php.

CVE-2020-5902
🔥 KEV BIG-IP General ⚡ nuclei
9.8
CRITICAL
EPSS
94.4%
2020 63 PoCs

In BIG-IP versions 15.0.0-15.1.0.3, 14.1.0-14.1.2.5, 13.1.0-13.1.3.3, 12.1.0-12.1.5.1, and 11.6.1-11.6.5.1, the Traffic Management User Interface (TMUI), also referred to as the Configuration utility, has a Remote Code Execution (RCE) vulnerability in undisclosed pages.