7558 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2023-4226
Chamilo Web
8.8
HIGH
EPSS
24.0%
2023 CWE-434 3 PoCs

Unrestricted file upload in `/main/inc/ajax/work.ajax.php` in Chamilo LMS <= v1.11.24 allows authenticated attackers with learner role to obtain remote code execution via uploading of PHP files.

CVE-2023-31223
Software Genérico Web
8.7
HIGH
EPSS
0.4%
2023 2 PoCs

Dradis before 4.8.0 allows persistent XSS by authenticated author users, related to avatars.

CVE-2023-54348
ERPGo SaaS General
8.7
HIGH
EPSS
0.1%
2023 CWE-1236 1 PoC

ERPGo SaaS 3.9 contains a CSV injection vulnerability that allows authenticated attackers to execute arbitrary code by injecting formula payloads into vendor name fields. Attackers can add malicious formulas like =10+20+cmd|' /C calc'!A0 in the vendor creation form, which execute when the exported CSV file is opened in spreadsheet applications.

CVE-2023-53869
WebIGniter Web
8.7
HIGH
EPSS
0.5%
2023 CWE-434 1 PoC

WEBIGniter 28.7.23 contains a file upload vulnerability that allows authenticated attackers to upload and execute dangerous PHP files through the media function. Attackers can leverage any created account to upload malicious PHP scripts that enable remote code execution on the application server.

CVE-2023-0050
GitLab DevOps Web
8.7
HIGH
EPSS
59.6%
2023 1 PoC

An issue has been discovered in GitLab affecting all versions starting from 13.7 before 15.7.8, all versions starting from 15.8 before 15.8.4, all versions starting from 15.9 before 15.9.2. A specially crafted Kroki diagram could lead to a stored XSS on the client side which allows attackers to perform arbitrary actions on behalf of victims.

CVE-2023-53980
projectSend Web
8.7
HIGH
EPSS
0.5%
2023 CWE-434 1 PoC

ProjectSend r1605 contains a remote code execution vulnerability that allows attackers to upload malicious files by manipulating file extensions. Attackers can upload shell scripts with disguised extensions through the upload.process.php endpoint to execute arbitrary commands on the server.

CVE-2023-53952
Dotclear Web
8.7
HIGH
EPSS
0.9%
2023 CWE-434 1 PoC

Dotclear 2.25.3 contains a remote code execution vulnerability that allows authenticated attackers to upload malicious PHP files with .phar extension through the blog post creation interface. Attackers can upload files containing PHP system commands that execute when the uploaded file is accessed, enabling arbitrary code execution on the server.

CVE-2023-7335
EduSoho General
8.7
HIGH
EPSS
0.2%
2023 CWE-22 1 PoC

EduSoho versions prior to 22.4.7 contain an arbitrary file read vulnerability in the classroom-course-statistics export functionality. A remote, unauthenticated attacker can supply crafted path traversal sequences in the fileNames[] parameter to read arbitrary files from the server filesystem, including application configuration files such as config/parameters.yml that may contain secrets and database credentials. Exploitation evidence was observed by the Shadowserver Foundation on 2026-01-19 (UTC).

CVE-2023-34873
P3 General
8.7
HIGH
EPSS
0.5%
2023 CWE-78 1 PoC

On MOBOTIX P3 cameras before MX-V4.7.2.18 and Mx6 cameras before MX-V5.2.0.61, the tcpdump feature does not properly validate input, which allows authenticated users to execute code.

CVE-2023-53956
flatnux Web
8.7
HIGH
EPSS
0.3%
2023 CWE-434 1 PoC

Flatnux 2021-03.25 contains an authenticated file upload vulnerability that allows administrative users to upload arbitrary PHP files through the file manager. Attackers with admin credentials can upload malicious PHP scripts to the web root directory, enabling remote code execution on the server.

CVE-2023-53734
dawa-pharma Database
8.7
HIGH
EPSS
0.2%
2023 CWE-89 2 PoCs

dawa-pharma-1.0 allows unauthenticated attackers to execute SQL queries on the server, allowing them to access sensitive information and potentially gain administrative access.

CVE-2023-53926
Simple CMS Web Database
8.7
HIGH
EPSS
0.4%
2023 CWE-89 1 PoC

PHPJabbers Simple CMS 5.0 contains a SQL injection vulnerability in the 'column' parameter that allows remote attackers to manipulate database queries. Attackers can inject crafted SQL payloads through the 'column' parameter in the index.php endpoint to potentially extract or modify database information.

CVE-2023-7326
Epson Stylus SX510W General
8.7
HIGH
EPSS
0.3%
2023 CWE-400 1 PoC

The Epson Stylus SX510W embedded web management service fails to properly handle consecutive ampersand characters in query parameters when accessing /PRESENTATION/HTML/TOP/INDEX.HTML. A remote attacker can send a malformed request that triggers improper input parsing or memory handling, resulting in the printer process shutting down or powering off, causing a denial of service condition.

CVE-2023-53868
coppermine-gallery Web
8.7
HIGH
EPSS
0.6%
2023 CWE-434 1 PoC

Coppermine Gallery 1.6.25 contains a remote code execution vulnerability that allows authenticated attackers to upload malicious PHP files through the plugin manager. Attackers can upload a zipped PHP file with system commands to the plugin directory and execute arbitrary code by accessing the uploaded plugin script.

CVE-2023-53934
Xperience General
8.7
HIGH
EPSS
0.3%
2023 CWE-97 1 PoC

A denial of service vulnerability in Kentico Xperience allows attackers to launch DoS attacks via specially crafted requests to the GetResource handler. Improper input validation enables remote attackers to potentially disrupt service availability through maliciously constructed requests.

CVE-2023-53770
MiniDVBLinux(TM) Distribution (MLD) General
8.7
HIGH
EPSS
0.3%
2023 CWE-260 2 PoCs

MiniDVBLinux 5.4 contains an unauthenticated configuration download vulnerability that allows remote attackers to access sensitive system configuration files through a direct object reference. Attackers can exploit the backup download endpoint by sending a GET request with 'action=getconfig' to retrieve a complete system configuration archive containing sensitive credentials.

CVE-2023-53921
SitemagicCMS Web
8.7
HIGH
EPSS
0.6%
2023 CWE-434 1 PoC

SitemagicCMS 4.4.3 contains a remote code execution vulnerability that allows attackers to upload malicious PHP files to the files/images directory. Attackers can upload a .phar file with system command execution payload to compromise the web application and execute arbitrary system commands.

CVE-2023-53896
DAP-1325 General
8.7
HIGH
EPSS
0.4%
2023 CWE-306 1 PoC

D-Link DAP-1325 firmware version 1.01 contains a broken access control vulnerability that allows unauthenticated attackers to download device configuration settings without authentication. Attackers can exploit the /cgi-bin/ExportSettings.sh endpoint to retrieve sensitive configuration information by directly accessing the export settings script.

CVE-2023-53917
Affiliate Me Web Database
8.7
HIGH
EPSS
0.0%
2023 CWE-89 1 PoC

Affiliate Me version 5.0.1 contains a SQL injection vulnerability in the admin.php endpoint that allows authenticated administrators to manipulate database queries. Attackers can exploit the 'id' parameter with crafted union-based queries to extract sensitive user information including usernames and password hashes.

CVE-2023-4897
mintplex-labs/anything-llm General
8.7
HIGH
EPSS
0.1%
2023 CWE-23 1 PoC

Relative Path Traversal in GitHub repository mintplex-labs/anything-llm prior to 0.0.1.