7500 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2024-28418
Software Genérico Web
6.5
MEDIUM
EPSS
0.2%
2024 1 PoC

Webedition CMS 9.2.2.0 has a File upload vulnerability via /webEdition/we_cmd.php

CVE-2024-24443
Software Genérico General
6.5
MEDIUM
EPSS
0.3%
2024 1 PoC

An uninitialized pointer dereference in the ngap_handle_pdu_session_resource_setup_response routine of OpenAirInterface CN5G AMF (oai-cn5g-amf) up to v2.0.0 allows attackers to cause a Denial of Service (DoS) via a crafted PDU Session Resource Setup Response.

CVE-2024-3096
PHP Web
6.5
MEDIUM
EPSS
1.1%
2024 CWE-20 1 PoC

In PHP  version 8.1.* before 8.1.28, 8.2.* before 8.2.18, 8.3.* before 8.3.5, if a password stored with password_hash() starts with a null byte (\x00), testing a blank string as the password via password_verify() will incorrectly return true.

CVE-2024-6512
Devolutions Server General
6.5
MEDIUM
EPSS
0.1%
2024 CWE-863 1 PoC

Authorization bypass in the PAM access request approval mechanism in Devolutions Server 2024.2.10 and earlier allows authenticated users with permissions to approve their own requests, bypassing intended security restrictions, via the PAM access request approval mechanism.

CVE-2024-51030
Software Genérico Web Database
6.5
MEDIUM
EPSS
7.6%
2024 2 PoCs

A SQL injection vulnerability in manage_client.php and view_cab.php of Sourcecodester Cab Management System 1.0 allows remote attackers to execute arbitrary SQL commands via the id parameter, leading to unauthorized access and potential compromise of sensitive data within the database.

CVE-2024-1982
WPvivid — Backup, Migration & Staging Web Database Windows
6.5
MEDIUM
EPSS
0.4%
2024 CWE-862 1 PoC

The Migration, Backup, Staging – WPvivid plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the get_restore_progress() and restore() functions in all versions up to, and including, 0.9.68. This makes it possible for unauthenticated attackers to exploit a SQL injection vulnerability or trigger a DoS.

CVE-2024-38200
Microsoft Office 2019 General
6.5
MEDIUM
EPSS
55.7%
2024 CWE-200 1 PoC

Microsoft Office Spoofing Vulnerability

CVE-2024-37605
Software Genérico Web
6.5
MEDIUM
EPSS
0.2%
2024 2 PoCs

A NULL pointer dereference in D-Link DIR-860L REVB_FIRMWARE_2.04.B04_ic5b allows attackers to cause a Denial of Service (DoS) via a crafted HTTP request.

CVE-2024-30043
Microsoft SharePoint Enterprise Server 2016 Windows
6.5
MEDIUM
EPSS
54.1%
2024 CWE-611 1 PoC

Microsoft SharePoint Server Information Disclosure Vulnerability

CVE-2024-6412
HTML Forms Web Windows
6.5
MEDIUM
EPSS
0.3%
2024 1 PoC

The HTML Forms WordPress plugin before 1.3.34 does not have CSRF checks in some places, which could allow attackers to make logged in users perform unwanted actions via CSRF attacks

CVE-2024-13117
Social Share Buttons for WordPress Web Windows
6.5
MEDIUM
EPSS
1.1%
2024 1 PoC

The Social Share Buttons for WordPress plugin through 2.7 allows an unauthenticated user to upload arbitrary images and change the path where they are uploaded

CVE-2024-0378
AI Engine – The Chatbot, AI Framework & MCP for WordPress Web Windows
6.5
MEDIUM
EPSS
6.2%
2024 CWE-79 1 PoC

The AI Engine: Chatbots, Generators, Assistants, GPT 4 and more! plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the AI chat data when discussion tracking is enabled in all versions up to, and including, 2.2.0 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVE-2024-38359
lnd General
6.5
MEDIUM
EPSS
0.2%
2024 CWE-20 1 PoC

The Lightning Network Daemon (lnd) - is a complete implementation of a Lightning Network node. A parsing vulnerability in lnd's onion processing logic and lead to a DoS vector due to excessive memory allocation. The issue was patched in lnd v0.17.0. Users should update to a version > v0.17.0 to be protected. Users unable to upgrade may set the `--rejecthtlc` CLI flag and also disable forwarding on channels via the `UpdateChanPolicyCommand`, or disable listening on a public network interface via the `--nolisten` flag as a mitigation.

CVE-2024-53614
Software Genérico Cloud
6.5
MEDIUM
EPSS
0.3%
2024 1 PoC

A hardcoded decryption key in Thinkware Cloud APK v4.3.46 allows attackers to access sensitive data and execute arbitrary commands with elevated privileges.

CVE-2024-2466
curl Web Cloud
6.5
MEDIUM
EPSS
0.1%
2024 3 PoCs

libcurl did not check the server certificate of TLS connections done to a host specified as an IP address, when built to use mbedTLS. libcurl would wrongly avoid using the set hostname function when the specified hostname was given as an IP address, therefore completely skipping the certificate check. This affects all uses of TLS protocols (HTTPS, FTPS, IMAPS, POPS3, SMTPS, etc).

CVE-2024-21205
Oracle Service Bus Web Database
6.5
MEDIUM
EPSS
0.6%
2024 1 PoC

Vulnerability in the Oracle Service Bus product of Oracle Fusion Middleware (component: OSB Core Functionality). The supported version that is affected is 12.2.1.4.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Service Bus. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Service Bus accessible data. CVSS 3.1 Base Score 6.5 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N).

CVE-2024-29197
pimcore General
6.5
MEDIUM
EPSS
0.0%
2024 CWE-200 1 PoC

Pimcore is an Open Source Data & Experience Management Platform. Any call with the query argument `?pimcore_preview=true` allows to view unpublished sites. In previous versions of Pimcore, session information would propagate to previews, so only a logged in user could open a preview. This no longer applies. Previews are broad open to any user and with just the hint of a restricted link one could gain access to possible confident / unreleased information. This vulnerability is fixed in 11.2.2 and 11.1.6.1.

CVE-2024-1290
User Registration Web Windows
6.5
MEDIUM
EPSS
0.4%
2024 1 PoC

The User Registration WordPress plugin before 2.12 does not prevent users with at least the contributor role from rendering sensitive shortcodes, allowing them to generate, and leak, valid password reset URLs, which they can use to take over any accounts.

CVE-2024-0093
vGPU software and Cloud Gaming Cloud
6.5
MEDIUM
EPSS
0.2%
2024 CWE-200 1 PoC

NVIDIA GPU software for Linux contains a vulnerability where it can expose sensitive information to an actor that is not explicitly authorized to have access to that information. A successful exploit of this vulnerability might lead to information disclosure.

CVE-2024-0679
ColorMag Web Windows
6.5
MEDIUM
EPSS
9.8%
2024 CWE-862 1 PoC

The ColorMag theme for WordPress is vulnerable to unauthorized access due to a missing capability check on the plugin_action_callback() function in all versions up to, and including, 3.1.2. This makes it possible for authenticated attackers, with subscriber-level access and above, to install and activate arbitrary plugins.