7835 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2022-28104
Software Genérico General
N/A
UNKNOWN
EPSS
0.6%
2022 2 PoCs

Foxit PDF Editor v11.3.1 was discovered to contain an arbitrary file upload vulnerability.

CVE-2022-33989
Software Genérico General
N/A
UNKNOWN
EPSS
0.3%
2022 1 PoC

dproxy-nexgen (aka dproxy nexgen) uses a static UDP source port (selected randomly only at boot time) in upstream queries sent to DNS resolvers. This allows DNS cache poisoning because there is not enough entropy to prevent traffic injection attacks.

CVE-2022-46718
macOS General
N/A
UNKNOWN
EPSS
0.0%
2022 1 PoC

A logic issue was addressed with improved restrictions. This issue is fixed in iOS 15.7.2 and iPadOS 15.7.2, macOS Ventura 13.1, macOS Big Sur 11.7.2, macOS Monterey 12.6.2. An app may be able to read sensitive location information

CVE-2022-35493
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
2.2%
2022 0 PoCs

A Cross-site scripting (XSS) vulnerability in json search parse and the json response in wrteam.in, eShop - Multipurpose Ecommerce Store Website version 3.0.4 allows remote attackers to inject arbitrary web script or HTML via the get_products?search parameter.

CVE-2022-33910
Software Genérico Web
N/A
UNKNOWN
EPSS
0.3%
2022 2 PoCs

An XSS vulnerability in MantisBT before 2.25.5 allows remote attackers to attach crafted SVG documents to issue reports or bugnotes. When a user or an admin clicks on the attachment, file_download.php opens the SVG document in a browser tab instead of downloading it as a file, causing the JavaScript code to execute.

CVE-2022-30352
Software Genérico Web Database
N/A
UNKNOWN
EPSS
0.5%
2022 1 PoC

phpABook 0.9i is vulnerable to SQL Injection due to insufficient sanitization of user-supplied data in the "auth_user" parameter in index.php script.

CVE-2022-36201
Software Genérico Web Database
N/A
UNKNOWN
EPSS
0.7%
2022 2 PoCs

Doctor’s Appointment System v1.0 is vulnerable to Blind SQLi via settings.php.

CVE-2022-0445
WordPress Real Cookie Banner: GDPR (DSGVO) & ePrivacy Cookie Consent Web Windows
N/A
UNKNOWN
EPSS
0.1%
2022 CWE-352 1 PoC

The WordPress Real Cookie Banner: GDPR (DSGVO) & ePrivacy Cookie Consent WordPress plugin before 2.14.2 does not have CSRF checks in place when resetting its settings, allowing attackers to make a logged in admin reset them via a CSRF attack

CVE-2022-2198
WPQA Builder Web Windows
N/A
UNKNOWN
EPSS
0.2%
2022 CWE-639 1 PoC

The WPQA Builder WordPress plugin before 5.7 which is a companion plugin to the Hilmer and Discy , does not check authorization before displaying private messages, allowing any logged in user to read other users private message using the message id, which can easily be brute forced.

CVE-2022-0424
Popup by Supsystic Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
42.0%
2022 CWE-306 1 PoC

The Popup by Supsystic WordPress plugin before 1.10.9 does not have any authentication and authorisation in an AJAX action, allowing unauthenticated attackers to call it and get the email addresses of subscribed users

CVE-2022-1952
Free Booking Plugin for Hotels, Restaurant and Car Rental – eaSYNC Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
85.9%
2022 CWE-434 1 PoC

The Free Booking Plugin for Hotels, Restaurant and Car Rental WordPress plugin before 1.1.16 suffers from insufficient input validation which leads to arbitrary file upload and subsequently to remote code execution. An AJAX action accessible to unauthenticated users is affected by this issue. An allowlist of valid file extensions is defined but is not used during the validation steps.

CVE-2022-25640
Software Genérico General
N/A
UNKNOWN
EPSS
5.1%
2022 1 PoC

In wolfSSL before 5.2.0, a TLS 1.3 server cannot properly enforce a requirement for mutual authentication. A client can simply omit the certificate_verify message from the handshake, and never present a certificate.

CVE-2022-23793
Joomla! CMS Web
N/A
UNKNOWN
EPSS
0.0%
2022 1 PoC

An issue was discovered in Joomla! 3.0.0 through 3.10.6 & 4.0.0 through 4.1.0. Extracting an specifilcy crafted tar package could write files outside of the intended path.

CVE-2022-30295
Software Genérico General
N/A
UNKNOWN
EPSS
0.3%
2022 1 PoC

uClibc-ng through 1.0.40 and uClibc through 0.9.33.2 use predictable DNS transaction IDs that may lead to DNS cache poisoning. This is related to a reset of a value to 0x2.

CVE-2022-30521
Software Genérico Web Networking
N/A
UNKNOWN
EPSS
1.8%
2022 1 PoC

The LAN-side Web-Configuration Interface has Stack-based Buffer Overflow vulnerability in the D-Link Wi-Fi router firmware DIR-890L DIR890LA1_FW107b09.bin and previous versions. The function created at 0x17958 of /htdocs/cgibin will call sprintf without checking the length of strings in parameters given by HTTP header and can be controlled by users easily. The attackers can exploit the vulnerability to carry out arbitrary code by means of sending a specially constructed payload to port 49152.

CVE-2022-1054
RSVP and Event Management Plugin Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
11.7%
2022 CWE-862 1 PoC

The RSVP and Event Management Plugin WordPress plugin before 2.7.8 does not have any authorisation checks when exporting its entries, and has the export function hooked to the init action. As a result, unauthenticated attackers could call it and retrieve PII such as first name, last name and email address of user registered for events

CVE-2022-25568
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
85.3%
2022 1 PoC

MotionEye v0.42.1 and below allows attackers to access sensitive information via a GET request to /config/list. To exploit this vulnerability, a regular user password must be unconfigured.

CVE-2022-1091
Safe SVG Web Windows
N/A
UNKNOWN
EPSS
0.5%
2022 CWE-79 1 PoC

The sanitisation step of the Safe SVG WordPress plugin before 1.9.10 can be bypassed by spoofing the content-type in the POST request to upload a file. Exploiting this vulnerability, an attacker will be able to perform the kinds of attacks that this plugin should prevent (mainly XSS, but depending on further use of uploaded SVG files potentially other XML attacks).

CVE-2022-27455
Software Genérico Database
N/A
UNKNOWN
EPSS
0.1%
2022 1 PoC

MariaDB Server v10.6.3 and below was discovered to contain an use-after-free in the component my_wildcmp_8bit_impl at /strings/ctype-simple.c.

CVE-2022-27438
Software Genérico General
N/A
UNKNOWN
EPSS
12.3%
2022 3 PoCs

Caphyon Ltd Advanced Installer 19.3 and earlier and many products that use the updater from Advanced Installer (Advanced Updater) are affected by a remote code execution vulnerability via the CustomDetection parameter in the update check function. To exploit this vulnerability, a user must start an affected installation to trigger the update check.