94322 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2023-0306
thorsten/phpmyfaq Web
9.1
CRITICAL
EPSS
0.4%
2023 CWE-79 1 PoC

Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.1.10.

CVE-2023-34034
Spring Security Web
9.1
CRITICAL
EPSS
47.9%
2023 1 PoC

Using "**" as a pattern in Spring Security configuration for WebFlux creates a mismatch in pattern matching between Spring Security and Spring WebFlux, and the potential for a security bypass.

CVE-2023-40276
Software Genérico General
9.1
CRITICAL
EPSS
0.7%
2023 3 PoCs

An issue was discovered in OpenClinic GA 5.247.01. An Unauthenticated File Download vulnerability has been discovered in pharmacy/exportFile.jsp.

CVE-2023-2003
Vision1210 General
9.1
CRITICAL
EPSS
0.4%
2023 CWE-506 1 PoC

Embedded malicious code vulnerability in Vision1210, in the build 5 of operating system version 4.3, which could allow a remote attacker to store base64-encoded malicious code in the device's data tables via the PCOM protocol, which can then be retrieved by a client and executed on the device.

CVE-2023-52268
Software Genérico General
9.1
CRITICAL
EPSS
0.9%
2023 1 PoC

The End-User Portal module before 1.0.65 for FreeScout sometimes allows an attacker to authenticate as an arbitrary user because a session token can be sent to the /auth endpoint. NOTE: this module is not part of freescout-helpdesk/freescout on GitHub.

CVE-2023-26556
Software Genérico General
9.1
CRITICAL
EPSS
0.6%
2023 1 PoC

io.finnet tss-lib before 2.0.0 can leak a secret key via a timing side-channel attack because it relies on the scalar-multiplication implementation in Go crypto/elliptic, which is not constant time (there is an if statement in a loop). One leak is in ecdsa/keygen/round_2.go. (bnb-chain/tss-lib and thorchain/tss are also affected.)

CVE-2023-5316
thorsten/phpmyfaq Web
9.1
CRITICAL
EPSS
0.3%
2023 CWE-79 1 PoC

Cross-site Scripting (XSS) - DOM in GitHub repository thorsten/phpmyfaq prior to 3.1.18.

CVE-2023-50422
cloud-security-services-integration-library Cloud
9.1
CRITICAL
EPSS
0.5%
2023 CWE-749 2 PoCs

SAP BTP Security Services Integration Library ([Java] cloud-security-services-integration-library) - versions below 2.17.0 and versions from 3.0.0 to before 3.3.0, allow under certain conditions an escalation of privileges. On successful exploitation, an unauthenticated attacker can obtain arbitrary permissions within the application.

CVE-2023-28725
Software Genérico General
9.1
CRITICAL
EPSS
2.2%
2023 3 PoCs

General Bytes Crypto Application Server (CAS) 20230120, as distributed with General Bytes BATM devices, allows remote attackers to execute arbitrary Java code by uploading a Java application to the /batm/app/admin/standalone/deployments directory, aka BATM-4780, as exploited in the wild in March 2023. This is fixed in 20221118.48 and 20230120.44.

CVE-2023-23460
Priority Web General
9.1
CRITICAL
EPSS
0.3%
2023 1 PoC

Priority Web version 19.1.0.68, parameter manipulation on an unspecified end-point may allow authentication bypass.

CVE-2023-0321
CR6 Web
9.1
CRITICAL
EPSS
0.3%
2023 CWE-200 1 PoC

Campbell Scientific dataloggers CR6, CR300, CR800, CR1000 and CR3000 may allow an attacker to download configuration files, which may contain sensitive information about the internal network. From factory defaults, the mentioned datalogges have HTTP and PakBus enabled. The devices, with the default configuration, allow this situation via the PakBus port. The exploitation of this vulnerability may allow an attacker to download, modify, and upload new configuration files.

CVE-2023-1712
deepset-ai/haystack General
9.1
CRITICAL
EPSS
0.5%
2023 CWE-547 1 PoC

Use of Hard-coded, Security-relevant Constants in GitHub repository deepset-ai/haystack prior to 0.1.30.

CVE-2023-35153
xwiki-platform Web
9.1
CRITICAL
EPSS
2.4%
2023 CWE-79 1 PoC

XWiki Platform is a generic wiki platform. Starting in version 5.4.4 and prior to versions 14.4.8, 14.10.4, and 15.0, a stored cross-site scripting vulnerability can be exploited by users with edit rights by adding a `AppWithinMinutes.FormFieldCategoryClass` class on a page and setting the payload on the page title. Then, any user visiting `/xwiki/bin/view/AppWithinMinutes/ClassEditSheet` executes the payload. The issue has been patched in XWiki 14.4.8, 14.10.4, and 15.0. As a workaround, update `AppWithinMinutes.ClassEditSheet` with a patch.

CVE-2023-49583
@sap/xssec Web
9.1
CRITICAL
EPSS
0.4%
2023 CWE-749 1 PoC

SAP BTP Security Services Integration Library ([Node.js] @sap/xssec - versions < 3.6.0, allow under certain conditions an escalation of privileges. On successful exploitation, an unauthenticated attacker can obtain arbitrary permissions within the application.

CVE-2023-6014
mlflow/mlflow General
9.1
CRITICAL
EPSS
0.9%
2023 CWE-598 1 PoC

An attacker is able to arbitrarily create an account in MLflow bypassing any authentication requirment.

CVE-2023-0877
froxlor/froxlor General
9.1
CRITICAL
EPSS
0.5%
2023 CWE-94 1 PoC

Code Injection in GitHub repository froxlor/froxlor prior to 2.0.11.

CVE-2023-47211
OpManager Web ⚡ nuclei
9.1
CRITICAL
EPSS
76.1%
2023 CWE-22 0 PoCs

A directory traversal vulnerability exists in the uploadMib functionality of ManageEngine OpManager 12.7.258. A specially crafted HTTP request can lead to arbitrary file creation. An attacker can send a malicious MiB file to trigger this vulnerability.

CVE-2023-5389
ControlEdge UOC General
9.1
CRITICAL
EPSS
0.1%
2023 CWE-749 2 PoCs

An attacker could potentially exploit this vulnerability, leading to the ability to modify files on Honeywell Experion ControlEdge VirtualUOC and ControlEdge UOC . This exploit could be used to write a file that may result in unexpected behavior based on configuration changes or updating of files that could result in subsequent execution of a malicious application if triggered. Honeywell recommends updating to the most recent version of the product. See Honeywell Security Notification for recommendations on upgrading and versioning. 

CVE-2023-2259
alfio-event/alf.io General
9.1
CRITICAL
EPSS
0.5%
2023 CWE-1336 1 PoC

Improper Neutralization of Special Elements Used in a Template Engine in GitHub repository alfio-event/alf.io prior to 2.0-M4-2304.

CVE-2023-37908
xwiki-rendering Web
9.1
CRITICAL
EPSS
1.5%
2023 CWE-83 1 PoC

XWiki Rendering is a generic Rendering system that converts textual input in a given syntax into another syntax. The cleaning of attributes during XHTML rendering, introduced in version 14.6-rc-1, allowed the injection of arbitrary HTML code and thus cross-site scripting via invalid attribute names. This can be exploited, e.g., via the link syntax in any content that supports XWiki syntax like comments in XWiki. When a user moves the mouse over a malicious link, the malicious JavaScript code is executed in the context of the user session. When this user is a privileged user who has programming