7558 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2023-48023
Software Genérico General ⚡ nuclei
9.1
CRITICAL
EPSS
89.2%
2023 0 PoCs

Anyscale Ray 2.6.3 and 2.8.0 allows /log_proxy SSRF. NOTE: the vendor's position is that this report is irrelevant because Ray, as stated in its documentation, is not intended for use outside of a strictly controlled network environment

CVE-2023-36471
xwiki-commons General
9.1
CRITICAL
EPSS
0.9%
2023 CWE-74 1 PoC

Xwiki commons is the common modules used by other XWiki top level projects. The HTML sanitizer that is included in XWiki since version 14.6RC1 allowed form and input HTML tags. In the context of XWiki, this allows an attacker without script right to either create forms that can be used for phishing attacks or also in the context of a sheet, the attacker could add an input like `{{html}}<input type="hidden" name="content" value="{{groovy}}println(&quot;Hello from Groovy!&quot;)" />{{/html}}` that would allow remote code execution when it is submitted by an admin (the sheet is rendered as part o

CVE-2023-2259
alfio-event/alf.io General
9.1
CRITICAL
EPSS
0.5%
2023 CWE-1336 1 PoC

Improper Neutralization of Special Elements Used in a Template Engine in GitHub repository alfio-event/alf.io prior to 2.0-M4-2304.

CVE-2023-49583
@sap/xssec Web
9.1
CRITICAL
EPSS
0.4%
2023 CWE-749 1 PoC

SAP BTP Security Services Integration Library ([Node.js] @sap/xssec - versions < 3.6.0, allow under certain conditions an escalation of privileges. On successful exploitation, an unauthenticated attacker can obtain arbitrary permissions within the application.

CVE-2023-29386
Manager for Icomoon General
9.1
CRITICAL
EPSS
0.3%
2023 CWE-434 1 PoC

Unrestricted Upload of File with Dangerous Type vulnerability in Julien Crego Manager for Icomoon.This issue affects Manager for Icomoon: from n/a through 2.0.

CVE-2023-27290
Observability with Instana DevOps
9.1
CRITICAL
EPSS
8.5%
2023 CWE-306 1 PoC

Docker based datastores for IBM Instana (IBM Observability with Instana 239-0 through 239-2, 241-0 through 241-2, and 243-0) do not currently require authentication. Due to this, an attacker within the network could access the datastores with read/write access. IBM X-Force ID: 248737.

CVE-2023-2227
modoboa/modoboa General ⚡ nuclei
9.1
CRITICAL
EPSS
90.5%
2023 CWE-285 1 PoC

Improper Authorization in GitHub repository modoboa/modoboa prior to 2.1.0.

CVE-2023-5389
ControlEdge UOC General
9.1
CRITICAL
EPSS
0.1%
2023 CWE-749 2 PoCs

An attacker could potentially exploit this vulnerability, leading to the ability to modify files on Honeywell Experion ControlEdge VirtualUOC and ControlEdge UOC . This exploit could be used to write a file that may result in unexpected behavior based on configuration changes or updating of files that could result in subsequent execution of a malicious application if triggered. Honeywell recommends updating to the most recent version of the product. See Honeywell Security Notification for recommendations on upgrading and versioning. 

CVE-2023-47211
OpManager Web ⚡ nuclei
9.1
CRITICAL
EPSS
76.1%
2023 CWE-22 0 PoCs

A directory traversal vulnerability exists in the uploadMib functionality of ManageEngine OpManager 12.7.258. A specially crafted HTTP request can lead to arbitrary file creation. An attacker can send a malicious MiB file to trigger this vulnerability.

CVE-2023-5754
PolyEco1000 General
9.1
CRITICAL
EPSS
0.1%
2023 CWE-307 1 PoC

Sielco PolyEco1000 uses a weak set of default administrative credentials that can be easily guessed in remote password attacks and gain full control of the system.

CVE-2023-0587
Trend Micro Apex One Web
9.1
CRITICAL
EPSS
14.5%
2023 1 PoC

A file upload vulnerability in exists in Trend Micro Apex One server build 11110. Using a malformed Content-Length header in an HTTP PUT message sent to URL /officescan/console/html/cgi/fcgiOfcDDA.exe, an unauthenticated remote attacker can upload arbitrary files to the SampleSubmission directory (i.e., \PCCSRV\TEMP\SampleSubmission) on the server. The attacker can upload a large number of large files to fill up the file system on which the Apex One server is installed.

CVE-2023-7006
Kontrol Lux General
9.1
CRITICAL
EPSS
0.1%
2023 1 PoC

The unlockKey character in a lock using Sciener firmware can be brute forced through repeated challenge requests, compromising the locks integrity.

CVE-2023-45685
Titan MFT Windows
9.1
CRITICAL
EPSS
0.4%
2023 CWE-22 1 PoC

Insufficient path validation when extracting a zip archive in South River Technologies' Titan MFT and Titan SFTP servers on Windows and Linux allows an authenticated attacker to write a file to any location on the filesystem via path traversal

CVE-2023-31126
xwiki-commons Web
9.1
CRITICAL
EPSS
2.7%
2023 CWE-86 1 PoC

`org.xwiki.commons:xwiki-commons-xml` is an XML library used by the open-source wiki platform XWiki. The HTML sanitizer, introduced in version 14.6-rc-1, allows the injection of arbitrary HTML code and thus cross-site scripting via invalid data attributes. This vulnerability does not affect restricted cleaning in HTMLCleaner as there attributes are cleaned and thus characters like `/` and `>` are removed in all attribute names. This problem has been patched in XWiki 14.10.4 and 15.0 RC1 by making sure that data attributes only contain allowed characters. There are no known workarounds apart fr

CVE-2023-29519
xwiki-platform General
9.1
CRITICAL
EPSS
4.7%
2023 CWE-74 1 PoC

XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. A registered user can perform remote code execution leading to privilege escalation by injecting the proper code in the "property" field of an attachment selector, as a gadget of their own dashboard. Note that the vulnerability does not impact comments of a wiki. The vulnerability has been patched in XWiki 13.10.11, 14.4.8, 14.10.2, 15.0-rc-1. Users are advised to upgrade. There are no known workarounds for this vulnerability.

CVE-2023-0877
froxlor/froxlor General
9.1
CRITICAL
EPSS
0.5%
2023 CWE-94 1 PoC

Code Injection in GitHub repository froxlor/froxlor prior to 2.0.11.

CVE-2023-6014
mlflow/mlflow General
9.1
CRITICAL
EPSS
0.9%
2023 CWE-598 1 PoC

An attacker is able to arbitrarily create an account in MLflow bypassing any authentication requirment.

CVE-2023-47873
WP Child Theme Generator General ⚡ nuclei
9.1
CRITICAL
EPSS
13.0%
2023 CWE-434 0 PoCs

Unrestricted Upload of File with Dangerous Type vulnerability in WEN Solutions WP Child Theme Generator.This issue affects WP Child Theme Generator: from n/a through 1.0.9.

CVE-2023-40275
Software Genérico General
9.1
CRITICAL
EPSS
0.6%
2023 2 PoCs

An issue was discovered in OpenClinic GA 5.247.01. It allows retrieval of patient lists via queries such as findFirstname= to _common/search/searchByAjax/patientslistShow.jsp.

CVE-2023-23465
Media Control Panel Web
9.1
CRITICAL
EPSS
0.1%
2023 CWE-352 1 PoC

Media CP Media Control Panel latest version. CSRF possible through unspecified endpoint.