VYPR

CVEs

31,788 total · page 264 of 636

  • CVE-2023-32314CriMay 15, 2023
    risk 0.57cvss 9.8epss 0.08

    vm2 is a sandbox that can run untrusted code with Node's built-in modules. A sandbox escape vulnerability exists in vm2 for versions up to and including 3.9.17. It abuses an unexpected creation of a host object based on the specification of `Proxy`. As a result a threat actor…

  • CVE-2023-30245CriMay 15, 2023
    risk 0.64cvss 9.8epss 0.01

    SQL injection vulnerability found in Judging Management System v.1.0 allows a remote attacker to execute arbitrary code via the crit_id parameter of the edit_criteria.php file.

  • CVE-2023-29861CriMay 15, 2023
    risk 0.64cvss 9.8epss 0.02

    An issue found in FLIR-DVTEL version not specified allows a remote attacker to execute arbitrary code via a crafted request to the management page of the device.

  • CVE-2023-29862CriMay 15, 2023
    risk 0.64cvss 9.8epss 0.02

    An issue found in Agasio-Camera device version not specified allows a remote attacker to execute arbitrary code via the check and authLevel parameters.

  • CVE-2023-0600CriMay 15, 2023
    risk 0.64cvss 9.8epss 0.04

    The WP Visitor Statistics (Real Time Traffic) WordPress plugin before 6.9 does not escape user input which is concatenated to an SQL query, allowing unauthenticated visitors to conduct SQL Injection attacks.

  • CVE-2022-4774CriMay 15, 2023
    risk 0.64cvss 9.8epss 0.02

    The Bit Form WordPress plugin before 1.9 does not validate the file types uploaded via it's file upload form field, allowing unauthenticated users to upload arbitrary files types such as PHP or HTML files to the server, leading to Remote Code Execution.

  • CVE-2023-31986CriMay 15, 2023
    risk 0.64cvss 9.8epss 0.08

    A Command Injection vulnerability in Edimax Wireless Router N300 Firmware BR-6428NS_v4 allows attacker to execute arbitrary code via the setWAN function in /bin/webs without any limitations.

  • CVE-2022-47937CriMay 15, 2023
    risk 0.64cvss 9.8epss 0.02

    Improper input validation in the Apache Sling Commons JSON bundle allows an attacker to trigger unexpected errors by supplying specially-crafted input. The org.apache.sling.commons.json bundle has been deprecated as of March 2017 and should not be used anymore. Consumers are…

  • CVE-2023-1698CriMay 15, 2023
    risk 0.70cvss 9.8epss 0.82

    In multiple products of WAGO a vulnerability allows an unauthenticated, remote attacker to create new users and change the device configuration which can result in unintended behaviour, Denial of Service and full system compromise.

  • CVE-2023-1096CriMay 12, 2023
    risk 0.64cvss 9.8epss 0.01

    SnapCenter versions 4.7 prior to 4.7P2 and 4.8 prior to 4.8P1 are susceptible to a vulnerability which could allow a remote unauthenticated attacker to gain access as an admin user.

  • CVE-2023-30247CriMay 12, 2023
    risk 0.64cvss 9.8epss 0.01

    File Upload vulnerability found in Oretnom23 Storage Unit Rental Management System v.1.0 allows a remote attacker to execute arbitrary code via the update_settings parameter.

  • CVE-2023-31983CriMay 12, 2023
    risk 0.66cvss 9.8epss 0.25

    A Command Injection vulnerability in Edimax Wireless Router N300 Firmware BR-6428NS_v4 allows attacker to execute arbitrary code via the mp function in /bin/webs without any limitations.

  • CVE-2023-27823CriMay 12, 2023
    risk 0.71cvss 9.8epss 0.53

    An authentication bypass in Optoma 1080PSTX C02 allows an attacker to access the administration console without valid credentials.

  • CVE-2023-1934CriMay 12, 2023
    risk 0.67cvss 9.8epss 0.08

    The PnPSCADA system, a product of SDG Technologies CC, is afflicted by a critical unauthenticated error-based PostgreSQL Injection vulnerability. Present within the hitlogcsv.jsp endpoint, this security flaw permits unauthenticated attackers to engage with the underlying…

  • CVE-2023-31985CriMay 12, 2023
    risk 0.64cvss 9.8epss 0.08

    A Command Injection vulnerability in Edimax Wireless Router N300 Firmware BR-6428NS_v4 allows attacker to execute arbitrary code via the formAccept function in /bin/webs without any limitations.

  • CVE-2023-30246CriMay 12, 2023
    risk 0.64cvss 9.8epss 0.01

    SQL injection vulnerability found in Judging Management System v.1.0 allows a remote attacker to execute arbitrary code via the contestant_id parameter.

  • CVE-2023-27238CriMay 12, 2023
    risk 0.64cvss 9.8epss 0.01

    LavaLite CMS v 9.0.0 was discovered to be vulnerable to web cache poisoning.

  • CVE-2023-32243CriMay 12, 2023
    risk 0.70cvss 9.8epss 0.76

    Improper Authentication vulnerability in WPDeveloper Essential Addons for Elementor allows Privilege Escalation. This issue affects Essential Addons for Elementor: from 5.4.0 through 5.7.1.

  • CVE-2023-30330CriMay 12, 2023
    risk 0.67cvss 9.8epss 0.06

    SoftExpert (SE) Excellence Suite 2.x versions before 2.1.3 is vulnerable to Local File Inclusion in the function /se/v42300/generic/gn_defaultframe/2.0/defaultframe_filter.php.

  • CVE-2023-29809CriMay 12, 2023
    risk 0.68cvss 9.8epss 0.11

    SQL injection vulnerability found in Maximilian Vogt companymaps (cmaps) v.8.0 allows a remote attacker to execute arbitrary code via a crafted script in the request.

  • CVE-2023-30192CriMay 12, 2023
    risk 0.64cvss 9.8epss 0.03

    Prestashop possearchproducts 1.7 is vulnerable to SQL Injection via PosSearch::find().

  • CVE-2023-1834CriMay 11, 2023
    risk 0.61cvss 9.4epss 0.01

    Rockwell Automation was made aware that Kinetix 5500 drives, manufactured between May 2022 and January 2023, and are running v7.13 may have the telnet and FTP ports open by default.  This could potentially allow attackers unauthorized access to the device through the open…

  • CVE-2023-24540CriMay 11, 2023
    risk 0.64cvss 9.8epss 0.02

    Not all valid JavaScript whitespace characters are considered to be whitespace. Templates containing whitespace characters outside of the character set "\t\n\f\r\u0020\u2028\u2029" in JavaScript contexts that also contain actions may not be properly sanitized during execution.

  • CVE-2022-47129CriMay 11, 2023
    risk 0.64cvss 9.8epss 0.01

    PHPOK v6.3 was discovered to contain a remote code execution (RCE) vulnerability.

  • CVE-2023-29863CriMay 11, 2023
    risk 0.64cvss 9.8epss 0.01

    Medical Systems Co. Medisys Weblab Products v19.4.03 was discovered to contain a SQL injection vulnerability via the tem:statement parameter in the WSDL files.

  • CVE-2023-0856CriMay 11, 2023
    risk 0.64cvss 9.8epss 0.01

    Buffer overflow in IPP sides attribute process of Office / Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute arbitrary code. *:Satera LBP660C…

  • CVE-2023-0855CriMay 11, 2023
    risk 0.64cvss 9.8epss 0.01

    Buffer overflow in IPP number-up attribute process of Office / Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute arbitrary code. *:Satera LBP660C…

  • CVE-2023-0854CriMay 11, 2023
    risk 0.64cvss 9.8epss 0.01

    Buffer overflow in NetBIOS QNAME registering and communication process of Office / Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute arbitrary code.…

  • CVE-2023-0853CriMay 11, 2023
    risk 0.64cvss 9.8epss 0.01

    Buffer overflow in mDNS NSEC record registering process of Office / Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute arbitrary code. *:Satera LBP660C…

  • CVE-2023-0852CriMay 11, 2023
    risk 0.64cvss 9.8epss 0.01

    Buffer overflow in the Address Book of Mobile Device function of Office / Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute arbitrary code. *:Satera…

  • CVE-2023-0851CriMay 11, 2023
    risk 0.64cvss 9.8epss 0.01

    Buffer overflow in CPCA Resource Download process of Office / Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute arbitrary code. *:Satera LBP660C…

  • CVE-2023-31498CriMay 11, 2023
    risk 0.64cvss 9.8epss 0.02

    A privilege escalation issue was found in PHP Gurukul Hospital Management System In v.4.0 allows a remote attacker to execute arbitrary code and access sensitive information via the session token parameter.

  • CVE-2023-31475CriMay 11, 2023
    risk 0.65cvss 9.8epss 0.14

    An issue was discovered on GL.iNet devices before 3.216. The function guci2_get() found in libglutil.so has a buffer overflow when an item is requested from a UCI context, and the value is pasted into a char pointer to a buffer without checking the size of the buffer.

  • CVE-2023-2645CriMay 11, 2023
    risk 0.64cvss 9.8epss 0.03

    A vulnerability, which was classified as critical, was found in USR USR-G806 1.0.41. Affected is an unknown function of the component Web Management Page. The manipulation of the argument username/password with the input root leads to use of hard-coded password. It is possible…

  • CVE-2023-32080CriMay 10, 2023
    risk 0.52cvss 9.0epss 0.01

    Wings is the server control plane for Pterodactyl Panel. A vulnerability affecting versions prior to 1.7.5 and versions 1.11.0 prior to 1.11.6 impacts anyone running the affected versions of Wings. This vulnerability can be used to gain access to the host system running Wings…

  • CVE-2022-29842CriMay 10, 2023
    risk 0.64cvss 9.8epss 0.02

    Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability that could allow an attacker to execute code in the context of the root user on a vulnerable CGI file was discovered in Western Digital My Cloud OS 5 devicesThis issue affects My…

  • CVE-2023-31149CriMay 10, 2023
    risk 0.59cvss 9.1epss 0.01

    An Improper Input Validation vulnerability in the Schweitzer Engineering Laboratories Real-Time Automation Controller (SEL RTAC) Web Interface could allow a remote authenticated attacker to execute arbitrary code. See SEL Service Bulletin dated 2022-11-15 for more details. …

  • CVE-2023-31148CriMay 10, 2023
    risk 0.59cvss 9.1epss 0.01

    An Improper Input Validation vulnerability in the Schweitzer Engineering Laboratories Real-Time Automation Controller (SEL RTAC) Web Interface could allow a remote authenticated attacker to execute arbitrary code. See SEL Service Bulletin dated 2022-11-15 for more details.

  • CVE-2023-30194CriMay 10, 2023
    risk 0.66cvss 9.8epss 0.32

    Prestashop posstaticfooter <= 1.0.0 is vulnerable to SQL Injection via posstaticfooter::getPosCurrentHook().

  • CVE-2022-36937CriMay 10, 2023
    risk 0.00cvss 9.8epss 0.01

    HHVM 4.172.0 and all prior versions use TLS 1.0 for secure connections when handling tls:// URLs in the stream extension. TLS1.0 has numerous published vulnerabilities and is deprecated. HHVM 4.153.4, 4.168.2, 4.169.2, 4.170.2, 4.171.1, 4.172.1, 4.173.0 replaces TLS1.0 with…

  • CVE-2023-32070CriMay 10, 2023
    risk 0.52cvss 9.0epss 0.01

    XWiki Platform is a generic wiki platform. Prior to version 14.6-rc-1, HTML rendering didn't check for dangerous attributes/attribute values. This allowed cross-site scripting (XSS) attacks via attributes and link URLs, e.g., supported in XWiki syntax. This has been patched in…

  • CVE-2023-30354CriMay 10, 2023
    risk 0.64cvss 9.8epss 0.00

    Shenzen Tenda Technology IP Camera CP3 V11.10.00.2211041355 does not defend against physical access to U-Boot via the UART: the Wi-Fi password is shown, and the hardcoded boot password can be inserted for console access.

  • CVE-2023-30353CriMay 10, 2023
    risk 0.64cvss 9.8epss 0.01

    Shenzen Tenda Technology IP Camera CP3 V11.10.00.2211041355 allows unauthenticated remote code execution via an XML document.

  • CVE-2023-30352CriMay 10, 2023
    risk 0.64cvss 9.8epss 0.01

    Shenzen Tenda Technology IP Camera CP3 V11.10.00.2211041355 was discovered to contain a hard-coded default password for the RTSP feed.

  • CVE-2023-31471CriMay 10, 2023
    risk 0.64cvss 9.8epss 0.01

    An issue was discovered on GL.iNet devices before 3.216. Through the software installation feature, it is possible to install arbitrary software, such as a reverse shell, because the restrictions on the available package list are limited to client-side verification. It is…

  • CVE-2023-28316CriMay 9, 2023
    risk 0.64cvss 9.8epss 0.01

    A security vulnerability has been discovered in the implementation of 2FA on the rocket.chat platform, where other active sessions are not invalidated upon activating 2FA. This could potentially allow an attacker to maintain access to a compromised account even after 2FA is…

  • CVE-2021-46760CriMay 9, 2023
    risk 0.64cvss 9.8epss 0.01

    A malicious or compromised UApp or ABL can send a malformed system call to the bootloader, which may result in an out-of-bounds memory access that may potentially lead to an attacker leaking sensitive information or achieving code execution.

  • CVE-2021-46756CriMay 9, 2023
    risk 0.59cvss 9.1epss 0.01

    Insufficient validation of inputs in SVC_MAP_USER_STACK in the ASP (AMD Secure Processor) bootloader may allow an attacker with a malicious Uapp or ABL to send malformed or invalid syscall to the bootloader resulting in a potential denial of service and loss of integrity. …

  • CVE-2021-46754CriMay 9, 2023
    risk 0.59cvss 9.1epss 0.01

    Insufficient input validation in the ASP (AMD Secure Processor) bootloader may allow an attacker with a compromised Uapp or ABL to coerce the bootloader into exposing sensitive information to the SMU (System Management Unit) resulting in a potential loss of confidentiality and…

  • CVE-2023-20520CriMay 9, 2023
    risk 0.64cvss 9.8epss 0.01

    Improper access control settings in ASP Bootloader may allow an attacker to corrupt the return address causing a stack-based buffer overrun potentially leading to arbitrary code execution.