7558 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2023-33989
SAP NetWeaver (BI CONT ADD ON) General
8.7
HIGH
EPSS
0.3%
2023 CWE-22 1 PoC

An attacker with non-administrative authorizations in SAP NetWeaver (BI CONT ADD ON) - versions 707, 737, 747, 757, can exploit a directory traversal flaw to over-write system files. Data from confidential files cannot be read but potentially some OS files can be over-written leading to system compromise.

CVE-2023-53772
MiniDVBLinux General
8.7
HIGH
EPSS
0.9%
2023 CWE-22 2 PoCs

MiniDVBLinux 5.4 contains an arbitrary file disclosure vulnerability that allows attackers to read sensitive system files through the 'file' GET parameter. Attackers can exploit the about page by supplying file paths to disclose arbitrary file contents on the affected device.

CVE-2023-53770
MiniDVBLinux(TM) Distribution (MLD) General
8.7
HIGH
EPSS
0.3%
2023 CWE-260 2 PoCs

MiniDVBLinux 5.4 contains an unauthenticated configuration download vulnerability that allows remote attackers to access sensitive system configuration files through a direct object reference. Attackers can exploit the backup download endpoint by sending a GET request with 'action=getconfig' to retrieve a complete system configuration archive containing sensitive credentials.

CVE-2023-53868
coppermine-gallery Web
8.7
HIGH
EPSS
0.6%
2023 CWE-434 1 PoC

Coppermine Gallery 1.6.25 contains a remote code execution vulnerability that allows authenticated attackers to upload malicious PHP files through the plugin manager. Attackers can upload a zipped PHP file with system commands to the plugin directory and execute arbitrary code by accessing the uploaded plugin script.

CVE-2023-53980
projectSend Web
8.7
HIGH
EPSS
0.5%
2023 CWE-434 1 PoC

ProjectSend r1605 contains a remote code execution vulnerability that allows attackers to upload malicious files by manipulating file extensions. Attackers can upload shell scripts with disguised extensions through the upload.process.php endpoint to execute arbitrary commands on the server.

CVE-2023-29186
NetWeaver (BI CONT ADDON) General
8.7
HIGH
EPSS
0.8%
2023 CWE-22 1 PoC

In SAP NetWeaver (BI CONT ADDON) - versions 707, 737, 747, 757, an attacker can exploit a directory traversal flaw in a report to upload and overwrite files on the SAP server. Data cannot be read but if a remote attacker has sufficient (administrative) privileges then potentially critical OS files can be overwritten making the system unavailable.

CVE-2023-53776
Screen SFT DAB Series - Compact Radio DAB Transmitter Web
8.7
HIGH
EPSS
0.2%
2023 CWE-384 2 PoCs

Screen SFT DAB 1.9.3 contains an authentication bypass vulnerability that allows attackers to exploit weak session management by reusing IP-bound session identifiers. Attackers can issue unauthorized requests to the device management API by leveraging the session binding mechanism to perform critical operations on the transmitter.

CVE-2023-53896
DAP-1325 General
8.7
HIGH
EPSS
0.4%
2023 CWE-306 1 PoC

D-Link DAP-1325 firmware version 1.01 contains a broken access control vulnerability that allows unauthenticated attackers to download device configuration settings without authentication. Attackers can exploit the /cgi-bin/ExportSettings.sh endpoint to retrieve sensitive configuration information by directly accessing the export settings script.

CVE-2023-53869
WebIGniter Web
8.7
HIGH
EPSS
0.5%
2023 CWE-434 1 PoC

WEBIGniter 28.7.23 contains a file upload vulnerability that allows authenticated attackers to upload and execute dangerous PHP files through the media function. Attackers can leverage any created account to upload malicious PHP scripts that enable remote code execution on the application server.

CVE-2023-54348
ERPGo SaaS General
8.7
HIGH
EPSS
0.1%
2023 CWE-1236 1 PoC

ERPGo SaaS 3.9 contains a CSV injection vulnerability that allows authenticated attackers to execute arbitrary code by injecting formula payloads into vendor name fields. Attackers can add malicious formulas like =10+20+cmd|' /C calc'!A0 in the vendor creation form, which execute when the exported CSV file is opened in spreadsheet applications.

CVE-2023-53934
Xperience General
8.7
HIGH
EPSS
0.3%
2023 CWE-97 1 PoC

A denial of service vulnerability in Kentico Xperience allows attackers to launch DoS attacks via specially crafted requests to the GetResource handler. Improper input validation enables remote attackers to potentially disrupt service availability through maliciously constructed requests.

CVE-2023-7326
Epson Stylus SX510W General
8.7
HIGH
EPSS
0.3%
2023 CWE-400 1 PoC

The Epson Stylus SX510W embedded web management service fails to properly handle consecutive ampersand characters in query parameters when accessing /PRESENTATION/HTML/TOP/INDEX.HTML. A remote attacker can send a malformed request that triggers improper input parsing or memory handling, resulting in the printer process shutting down or powering off, causing a denial of service condition.

CVE-2023-7327
Ozeki SMS Gateway General
8.7
HIGH
EPSS
0.8%
2023 CWE-22 1 PoC

Ozeki SMS Gateway versions up to and including 10.3.208 contain a path traversal vulnerability. Successful exploitation allows an unauthenticated attacker to use URL-encoded traversal sequences to read arbitrary files from the underlying filesystem with the privileges of the gateway service, leading to disclosure of sensitive information.

CVE-2023-53926
Simple CMS Web Database
8.7
HIGH
EPSS
0.4%
2023 CWE-89 1 PoC

PHPJabbers Simple CMS 5.0 contains a SQL injection vulnerability in the 'column' parameter that allows remote attackers to manipulate database queries. Attackers can inject crafted SQL payloads through the 'column' parameter in the index.php endpoint to potentially extract or modify database information.

CVE-2023-53956
flatnux Web
8.7
HIGH
EPSS
0.3%
2023 CWE-434 1 PoC

Flatnux 2021-03.25 contains an authenticated file upload vulnerability that allows administrative users to upload arbitrary PHP files through the file manager. Attackers with admin credentials can upload malicious PHP scripts to the web root directory, enabling remote code execution on the server.

CVE-2023-34873
P3 General
8.7
HIGH
EPSS
0.5%
2023 CWE-78 1 PoC

On MOBOTIX P3 cameras before MX-V4.7.2.18 and Mx6 cameras before MX-V5.2.0.61, the tcpdump feature does not properly validate input, which allows authenticated users to execute code.

CVE-2023-7335
EduSoho General
8.7
HIGH
EPSS
0.2%
2023 CWE-22 1 PoC

EduSoho versions prior to 22.4.7 contain an arbitrary file read vulnerability in the classroom-course-statistics export functionality. A remote, unauthenticated attacker can supply crafted path traversal sequences in the fileNames[] parameter to read arbitrary files from the server filesystem, including application configuration files such as config/parameters.yml that may contain secrets and database credentials. Exploitation evidence was observed by the Shadowserver Foundation on 2026-01-19 (UTC).

CVE-2023-7307
Sangfor Behavior Management System (DC Management System) General
8.7
HIGH
EPSS
0.2%
2023 CWE-611 2 PoCs

Sangfor Behavior Management System (also referred to as DC Management System in Chinese-language documentation) contains an XML external entity (XXE) injection vulnerability in the /src/sangforindex endpoint. A remote unauthenticated attacker can submit crafted XML data containing external entity definitions, leading to potential disclosure of internal files, server-side request forgery (SSRF), or other impacts depending on parser behavior. The vulnerability is due to improper configuration of the XML parser, which allows resolution of external entities without restriction. This product is now

CVE-2023-7329
Lan Controller General
8.7
HIGH
EPSS
0.5%
2023 CWE-306 2 PoCs

Tinycontrol LAN Controller v3 (LK3) firmware versions up to 1.58a (hardware v3.8) contain a missing authentication vulnerability in the stm.cgi endpoint. A remote, unauthenticated attacker can send crafted requests to forcibly reboot the device or restore factory settings, leading to a denial of service and configuration loss.

CVE-2023-34120
Zoom for Windows Client Windows
8.7
HIGH
EPSS
0.0%
2023 CWE-347 1 PoC

Improper privilege management in Zoom for Windows, Zoom Rooms for Windows, and Zoom VDI for Windows clients before 5.14.0 may allow an authenticated user to potentially enable an escalation of privilege via local access. Users may potentially utilize higher level system privileges maintained by the Zoom client to spawn processes with escalated privileges.