7835 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2022-29587
Software Genérico General
N/A
UNKNOWN
EPSS
0.1%
2022 1 PoC

Konica Minolta bizhub MFP devices before 2022-04-14 have an internal Chromium browser that executes with root (aka superuser) access privileges.

CVE-2022-1239
HubSpot – CRM, Email Marketing, Live Chat, Forms & Analytics Web Windows
N/A
UNKNOWN
EPSS
0.6%
2022 CWE-918 1 PoC

The HubSpot WordPress plugin before 8.8.15 does not validate the proxy URL given to the proxy REST endpoint, which could allow users with the edit_posts capability (by default contributor and above) to perform SSRF attacks

CVE-2022-0836
SEMA API Web Database Windows
N/A
UNKNOWN
EPSS
3.3%
2022 CWE-89 1 PoC

The SEMA API WordPress plugin before 4.02 does not properly sanitise and escape some parameters before using them in SQL statements via an AJAX action, leading to SQL Injections exploitable by unauthenticated users

CVE-2022-24302
Software Genérico General
N/A
UNKNOWN
EPSS
0.7%
2022 1 PoC

In Paramiko before 2.10.1, a race condition (between creation and chmod) in the write_private_key_file function could allow unauthorized information disclosure.

CVE-2022-38668
Software Genérico Web
N/A
UNKNOWN
EPSS
0.4%
2022 2 PoCs

HTTP applications (servers) based on Crow through 1.0+4 may reveal potentially sensitive uninitialized data from stack memory when fulfilling a request for a static file smaller than 16 KB.

CVE-2022-31665
VMware Workspace ONE Access, Identity Manager and vRealize Automation General
N/A
UNKNOWN
EPSS
3.1%
2022 1 PoC

VMware Workspace ONE Access, Identity Manager and vRealize Automation contain a remote code execution vulnerability. A malicious actor with administrator and network access can trigger a remote code execution.

CVE-2022-23058
frappe Web
N/A
UNKNOWN
EPSS
0.2%
2022 CWE-79 1 PoC

ERPNext in versions v12.0.9-v13.0.3 are affected by a stored XSS vulnerability that allows low privileged users to store malicious scripts in the ‘username’ field in ‘my settings’ which can lead to full account takeover.

CVE-2022-23715
Elastic Cloud Enterprise Web Database Cloud
N/A
UNKNOWN
EPSS
0.3%
2022 CWE-532 1 PoC

A flaw was discovered in ECE before 3.4.0 that might lead to the disclosure of sensitive information such as user passwords and Elasticsearch keystore settings values in logs such as the audit log or deployment logs in the Logging and Monitoring cluster. The affected APIs are PATCH /api/v1/user and PATCH /deployments/{deployment_id}/elasticsearch/{ref_id}/keystore

CVE-2022-0479
Popup Builder – Create highly converting, mobile friendly marketing popups. Web Database Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
76.4%
2022 CWE-89 1 PoC

The Popup Builder WordPress plugin before 4.1.1 does not sanitise and escape the sgpb-subscription-popup-id parameter before using it in a SQL statement in the All Subscribers admin dashboard, leading to a SQL injection, which could also be used to perform Reflected Cross-Site Scripting attack against a logged in admin opening a malicious link

CVE-2022-30327
Software Genérico Web Networking
N/A
UNKNOWN
EPSS
0.1%
2022 2 PoCs

An issue was found on TRENDnet TEW-831DR 1.0 601.130.1.1356 devices. The web interface is vulnerable to CSRF. An attacker can change the pre-shared key of the Wi-Fi router if the interface's IP address is known.

CVE-2022-29875
Biograph Horizon PET/CT Systems General
N/A
UNKNOWN
EPSS
2.8%
2022 CWE-502 1 PoC

A vulnerability has been identified in Biograph Horizon PET/CT Systems (All VJ30 versions < VJ30C-UD01), MAGNETOM Family (NUMARIS X: VA12M, VA12S, VA10B, VA20A, VA30A, VA31A), MAMMOMAT Revelation (All VC20 versions < VC20D), NAEOTOM Alpha (All VA40 versions < VA40 SP2), SOMATOM X.cite (All versions < VA30 SP5 or VA40 SP2), SOMATOM X.creed (All versions < VA30 SP5 or VA40 SP2), SOMATOM go.All (All versions < VA30 SP5 or VA40 SP2), SOMATOM go.Now (All versions < VA30 SP5 or VA40 SP2), SOMATOM go.Open Pro (All versions < VA30 SP5 or VA40 SP2), SOMATOM go.Sim (All versions < VA30 SP5 or VA40 SP2),

CVE-2022-29804
path/filepath Windows
N/A
UNKNOWN
EPSS
0.1%
2022 1 PoC

Incorrect conversion of certain invalid paths to valid, absolute paths in Clean in path/filepath before Go 1.17.11 and Go 1.18.3 on Windows allows potential directory traversal attack.

CVE-2022-29856
Software Genérico General
N/A
UNKNOWN
EPSS
0.6%
2022 3 PoCs

A hardcoded cryptographic key in Automation360 22 allows an attacker to decrypt exported RPA packages.

CVE-2022-32018
Software Genérico Web Database ⚡ nuclei
N/A
UNKNOWN
EPSS
11.8%
2022 0 PoCs

Complete Online Job Search System v1.0 is vulnerable to SQL Injection via /eris/index.php?q=hiring&search=.

CVE-2022-1303
Slide Anything – Responsive Content / HTML Slider and Carousel Web Windows
N/A
UNKNOWN
EPSS
0.2%
2022 CWE-79 1 PoC

The Slide Anything WordPress plugin before 2.3.44 does not sanitize and escape sliders' description, which could allow high privilege users such as editor and above to perform Cross-Site Scripting attacks even when the unfiltered_html is disallowed

CVE-2022-0250
Redirection for Contact Form 7 Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
2.8%
2022 CWE-79 1 PoC

The Redirection for Contact Form 7 WordPress plugin before 2.5.0 does not escape a link generated before outputting it in an attribute, leading to a Reflected Cross-Site Scripting

CVE-2022-30929
Software Genérico Web
N/A
UNKNOWN
EPSS
5.3%
2022 2 PoCs

Mini-Tmall v1.0 is vulnerable to Insecure Permissions via tomcat-embed-jasper.

CVE-2022-23178
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
92.9%
2022 1 PoC

An issue was discovered on Crestron HD-MD4X2-4K-E 1.0.0.2159 devices. When the administrative web interface of the HDMI switcher is accessed unauthenticated, user credentials are disclosed that are valid to authenticate to the web interface. Specifically, aj.html sends a JSON document with uname and upassword fields.

CVE-2022-1916
Active Products Tables for WooCommerce. Professional products tables for WooCommerce store Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
4.6%
2022 CWE-79 1 PoC

The Active Products Tables for WooCommerce. Professional products tables for WooCommerce store WordPress plugin before 1.0.5 does not sanitise and escape a parameter before outputting it back in the response of an AJAX action (available to both unauthenticated and authenticated users), leading to a Reflected cross-Site Scripting

CVE-2022-3142
NEX-Forms – Ultimate Form Builder – Contact forms and much more Web Database Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
8.0%
2022 CWE-89 3 PoCs

The NEX-Forms WordPress plugin before 7.9.7 does not properly sanitise and escape user input before using it in SQL statements, leading to SQL injections. The attack can be executed by anyone who is permitted to view the forms statistics chart, by default administrators, however can be configured otherwise via the plugin settings.