7500 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2024-49403
Samsung Voice Recorder General
4.6
MEDIUM
EPSS
0.2%
2024 1 PoC

Improper access control in Samsung Voice Recorder prior to version 21.5.40.37 allows physical attackers to access recording files on the lock screen.

CVE-2024-20827
Gallery General
4.6
MEDIUM
EPSS
0.1%
2024 1 PoC

Improper access control vulnerability in Samsung Gallery prior to version 14.5.04.4 allows physical attackers to access the picture using physical keyboard on the lockscreen.

CVE-2024-33905
Software Genérico Web
4.6
MEDIUM
EPSS
0.1%
2024 2 PoCs

In Telegram WebK before 2.0.0 (488), a crafted Mini Web App allows XSS via the postMessage web_app_open_link event type.

CVE-2024-37603
Software Genérico General
4.6
MEDIUM
EPSS
0.2%
2024 1 PoC

An issue was discovered in Mercedes Benz NTG (New Telematics Generation) 6. A possible type confusion exists in the user data import/export function of NTG 6 head units. To perform this attack, local access to the USB interface of the car is needed. With prepared data, an attacker can cause the User-Data service to fail. The failed service instance will restart automatically.

CVE-2024-20882
Samsung Mobile Devices General
4.6
MEDIUM
EPSS
0.3%
2024 1 PoC

Out-of-bounds read vulnerability in bootloader prior to SMR June-2024 Release 1 allows physical attackers to arbitrary data access.

CVE-2024-3843
Chrome General
4.6
MEDIUM
EPSS
0.7%
2024 1 PoC

Insufficient data validation in Downloads in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)

CVE-2024-37601
Software Genérico General
4.6
MEDIUM
EPSS
0.2%
2024 1 PoC

An issue was discovered in Mercedes Benz NTG (New Telematics Generation) 6. A possible heap buffer overflow exists in the user data import/export function of NTG 6 head units. To perform this attack, local access to the USB interface of the car is needed. With prepared data, an attacker can cause the User-Data service to fail. The failed service instance will restart automatically.

CVE-2024-35106
Software Genérico General
4.6
MEDIUM
EPSS
0.3%
2024 1 PoC

NEXTU FLETA AX1500 WIFI6 v1.0.3 was discovered to contain a buffer overflow at /boafrm/formIpQoS. This vulnerability allows attackers to cause a Denial of Service (DoS) or potentially arbitrary code execution via a crafted POST request.

CVE-2024-33819
Software Genérico Web
4.6
MEDIUM
EPSS
0.2%
2024 1 PoC

Globitel KSA SpeechLog v8.1 was discovered to contain a stored cross-site scripting (XSS) vulnerability in the Save Query function.

CVE-2024-20839
Samsung Voice Recorder General
4.6
MEDIUM
EPSS
0.1%
2024 1 PoC

Improper access control in Samsung Voice Recorder prior to versions 21.5.16.01 in Android 12 and Android 13, 21.4.51.02 in Android 14 allows physical attackers to access recording files on the lock screen.

CVE-2024-40886
Mattermost Web
4.6
MEDIUM
EPSS
0.2%
2024 CWE-352 1 PoC

Mattermost versions 9.9.x <= 9.9.1, 9.5.x <= 9.5.7, 9.10.x <= 9.10.0, 9.8.x <= 9.8.2 fail to sanitize user inputs in the frontend that are used for redirection which allows for a one-click client-side path traversal that is leading to CSRF in User Management page of the system console.

CVE-2024-31799
Software Genérico General
4.6
MEDIUM
EPSS
0.0%
2024 1 PoC

Information Disclosure in GNCC's GC2 Indoor Security Camera 1080P allows an attacker with physical access to read the WiFi passphrase via the UART Debugging Port.

CVE-2024-7103
WSO2 Identity Server Web
4.6
MEDIUM
EPSS
0.1%
2024 CWE-79 1 PoC

A reflected cross-site scripting (XSS) vulnerability exists in the sub-organization login flow of WSO2 Identity Server 7.0.0 due to improper input validation. A malicious actor can exploit this vulnerability to inject arbitrary JavaScript into the login flow, potentially leading to UI modifications, redirections to malicious websites, or data exfiltration from the browser. While this issue could allow an attacker to manipulate the user’s browser, session-related sensitive cookies remain protected with the httpOnly flag, preventing session hijacking.

CVE-2024-57523
Software Genérico Web
4.5
MEDIUM
EPSS
0.2%
2024 1 PoC

Cross Site Request Forgery (CSRF) in Users.php in SourceCodester Packers and Movers Management System 1.0 allows attackers to create unauthorized admin accounts via crafted requests sent to an authenticated admin user.

CVE-2024-2432
GlobalProtect App Networking Windows
4.5
MEDIUM
EPSS
0.4%
2024 CWE-269 2 PoCs

A privilege escalation (PE) vulnerability in the Palo Alto Networks GlobalProtect app on Windows devices enables a local user to execute programs with elevated privileges. However, execution requires that the local user is able to successfully exploit a race condition.

CVE-2024-21530
cocoon General
4.5
MEDIUM
EPSS
0.0%
2024 CWE-323 1 PoC

Versions of the package cocoon before 0.4.0 are vulnerable to Reusing a Nonce, Key Pair in Encryption when the encrypt, wrap, and dump functions are sequentially called. An attacker can generate the same ciphertext by creating a new encrypted message with the same cocoon object. **Note:** The issue does NOT affect objects created with Cocoon::new which utilizes ThreadRng.

CVE-2024-3060
ENL Newsletter Web Database Windows
4.5
MEDIUM
EPSS
0.2%
2024 1 PoC

The ENL Newsletter WordPress plugin through 1.0.1 does not sanitize and escape a parameter before using it in a SQL statement, allowing admin+ to perform SQL injection attacks

CVE-2024-47914
VaeMendis Ubooquity version 2.1.2 Web
4.5
MEDIUM
EPSS
0.1%
2024 CWE-352 1 PoC

VaeMendis - CWE-352: Cross-Site Request Forgery (CSRF)

CVE-2024-45833
Mattermost General
4.5
MEDIUM
EPSS
0.2%
2024 CWE-693 1 PoC

Mattermost Mobile Apps versions <=2.18.0 fail to disable autocomplete during login while typing the password and visible password is selected, which allows the password to get saved in the dictionary when the user has Swiftkey as the default keyboard, the masking is off and the password contains a special character..

CVE-2024-2405
Float menu Web Windows
4.5
MEDIUM
EPSS
0.2%
2024 1 PoC

The Float menu WordPress plugin before 6.0.1 does not have CSRF check in its bulk actions, which could allow attackers to make logged in admin delete arbitrary menu via a CSRF attack.