7500 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2024-55104
Software Genérico Web Database
7.2
HIGH
EPSS
0.1%
2024 1 PoC

Online Nurse Hiring System v1.0 was discovered to contain multiple SQL injection vulnerabilities in the component /admin/add-nurse.php via the gender and emailid parameters.

CVE-2024-12773
Altra Side Menu Web Database Windows
7.2
HIGH
EPSS
0.4%
2024 1 PoC

The Altra Side Menu WordPress plugin through 2.0 does not sanitize and escape a parameter before using it in a SQL statement, allowing admins to perform SQL injection attacks

CVE-2024-42523
Software Genérico Web
7.2
HIGH
EPSS
0.1%
2024 1 PoC

publiccms V4.0.202302.e and before is vulnerable to Any File Upload via publiccms/admin/cmsTemplate/saveMetaData

CVE-2024-23112
FortiOS Networking
7.2
HIGH
EPSS
0.1%
2024 CWE-639 1 PoC

An authorization bypass through user-controlled key vulnerability [CWE-639] in FortiOS version 7.4.0 through 7.4.1, 7.2.0 through 7.2.6, 7.0.1 through 7.0.13, 6.4.7 through 6.4.14, and FortiProxy version 7.4.0 through 7.4.2, 7.2.0 through 7.2.8, 7.0.0 through 7.0.14 SSL-VPN may allow an authenticated attacker to gain access to another user’s bookmark via URL manipulation.

CVE-2024-13723
NagVis Web
7.2
HIGH
EPSS
1.1%
2024 CWE-434 2 PoCs

The "NagVis" component within Checkmk is vulnerable to remote code execution. An authenticated attacker with administrative level privileges is able to upload a malicious PHP file and modify specific settings to execute the contents of the file as PHP.

CVE-2024-9162
All-in-One WP Migration and Backup Web Windows
7.2
HIGH
EPSS
62.6%
2024 CWE-94 1 PoC

The All-in-One WP Migration and Backup plugin for WordPress is vulnerable to arbitrary PHP Code Injection due to missing file type validation during the export in all versions up to, and including, 7.86. This makes it possible for authenticated attackers, with Administrator-level access and above, to create an export file with the .php extension on the affected site's server, adding an arbitrary PHP code to it, which may make remote code execution possible.

CVE-2024-24693
Zoom Rooms Client for Windows Windows
7.2
HIGH
EPSS
0.1%
2024 CWE-379 1 PoC

Improper access control in the installer for Zoom Rooms Client for Windows before version 5.17.5 may allow an authenticated user to conduct a denial of service via local access.

CVE-2024-8625
TS Poll Web Database Windows ⚡ nuclei
7.2
HIGH
EPSS
2.9%
2024 1 PoC

The TS Poll WordPress plugin before 2.4.0 does not sanitize and escape a parameter before using it in a SQL statement, allowing admins to perform SQL injection attacks

CVE-2024-27178
Toshiba Tec e-Studio multi-function peripheral (MFP) Web
7.2
HIGH
EPSS
5.9%
2024 CWE-22 2 PoCs

An attacker can get Remote Code Execution by overwriting files. Overwriting files is enable by falsifying file name variable. This vulnerability can be executed in combination with other vulnerabilities and difficult to execute alone. So, the CVSS score for this vulnerability alone is lower than the score listed in the "Base Score" of this vulnerability. For detail on related other vulnerabilities, please ask to the below contact point. https://www.toshibatec.com/contacts/products/ As for the affected products/models/versions, see the reference URL.

CVE-2024-12735
Advance Post Prefix Web Database Windows
7.2
HIGH
EPSS
0.3%
2024 1 PoC

The Advance Post Prefix WordPress plugin through 1.1.1 does not sanitize and escape a parameter before using it in a SQL statement, allowing admins and above to perform SQL injection attacks

CVE-2024-50960
Software Genérico General
7.2
HIGH
EPSS
4.3%
2024 1 PoC

A command injection vulnerability in the Nmap diagnostic tool in the admin web console of Extron SMP 111 <=3.01, SMP 351 <=2.16, SMP 352 <= 2.16, and SME 211 <= 3.02, allows a remote authenticated attacker to execute arbitrary commands as root on the underlying operating system.

CVE-2024-10793
WP Activity Log Web Windows
7.2
HIGH
EPSS
68.7%
2024 CWE-79 3 PoCs

The WP Activity Log plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the user_id parameter in all versions up to, and including, 5.2.1 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that will execute whenever an administrative user accesses an injected page.

CVE-2024-13618
aoa-downloadable Web Windows
7.2
HIGH
EPSS
0.2%
2024 1 PoC

The aoa-downloadable WordPress plugin through 0.1.0 lacks authorization and authentication for requests to its download.php endpoint, allowing unauthenticated visitors to make requests to arbitrary URLs.

CVE-2024-11372
Connexion Logs Web Database Windows
7.2
HIGH
EPSS
1.3%
2024 1 PoC

The Connexion Logs WordPress plugin through 3.0.2 does not sanitize and escape a parameter before using it in a SQL statement, allowing admins to perform SQL injection attacks

CVE-2024-24386
Software Genérico General
7.2
HIGH
EPSS
1.4%
2024 1 PoC

An issue in VitalPBX v.3.2.4-5 allows an attacker to execute arbitrary code via a crafted payload to the /var/lib/vitalpbx/scripts folder.

CVE-2024-22107
Software Genérico Web
7.2
HIGH
EPSS
1.8%
2024 2 PoCs

An issue was discovered in GTB Central Console 15.17.1-30814.NG. The method systemSettingsDnsDataAction at /opt/webapp/src/AppBundle/Controller/React/SystemSettingsController.php is vulnerable to command injection via the /old/react/v1/api/system/dns/data endpoint. An authenticated attacker can abuse it to inject an arbitrary command and compromise the platform.

CVE-2024-58258
SugarCRM Web
7.2
HIGH
EPSS
2.2%
2024 CWE-94 1 PoC

SugarCRM before 13.0.4 and 14.x before 14.0.1 allows SSRF in the API module because a limited type of code injection can occur.

CVE-2024-48454
Software Genérico General
7.2
HIGH
EPSS
2.7%
2024 2 PoCs

An issue in SourceCodester Purchase Order Management System v1.0 allows a remote attacker to execute arbitrary code via the /admin?page=user component

CVE-2024-45844
BIG-IP General
7.2
HIGH
EPSS
0.1%
2024 CWE-306 1 PoC

BIG-IP monitor functionality may allow an attacker to bypass access control restrictions, regardless of the port lockdown settings.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

CVE-2024-2954
Action Network Web Database Windows
7.2
HIGH
EPSS
0.6%
2024 1 PoC

The Action Network plugin for WordPress is vulnerable to SQL Injection via the 'bulk-action' parameter in version 1.4.3 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with administrator-level access and above, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.