VYPR

CVEs

38,096 total · page 327 of 762

  • CVE-2024-1811CriMar 20, 2024
    risk 0.64cvss 9.8epss 0.01

    A potential vulnerability has been identified in OpenText ArcSight Platform. The vulnerability could be remotely exploited.

  • CVE-2024-1800CriMar 20, 2024
    risk 0.71cvss 9.9epss 0.40

    In Progress® Telerik® Report Server versions prior to 2024 Q1 (10.0.24.130), a remote code execution attack is possible through an insecure deserialization vulnerability.

  • CVE-2024-1711CriMar 20, 2024
    risk 0.64cvss 9.8epss 0.01

    The Create by Mediavine plugin for WordPress is vulnerable to SQL Injection via the 'id' parameter in all versions up to, and including, 1.9.4 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it…

  • CVE-2024-22081CriMar 20, 2024
    risk 0.64cvss 9.8epss 0.01

    An issue was discovered in Elspec G5 digital fault recorder versions 1.1.4.15 and before. Unauthenticated memory corruption can occur in the HTTP header parsing mechanism.

  • CVE-2024-22080CriMar 20, 2024
    risk 0.64cvss 9.8epss 0.01

    An issue was discovered in Elspec G5 digital fault recorder versions 1.1.4.15 and before. Unauthenticated memory corruption can occur during XML body parsing.

  • CVE-2024-28389CriMar 19, 2024
    risk 0.64cvss 9.8epss 0.01

    SQL injection vulnerability in KnowBand spinwheel v.3.0.3 and before allows a remote attacker to gain escalated privileges and obtain sensitive information via the SpinWheelFrameSpinWheelModuleFrontController::sendEmail() method.

  • CVE-2024-28595CriMar 19, 2024
    risk 0.67cvss 9.8epss 0.01

    SQL Injection vulnerability in Employee Management System v1.0 allows attackers to run arbitrary SQL commands via the admin_id parameter in update-admin.php.

  • CVE-2024-28394CriMar 19, 2024
    risk 0.64cvss 9.8epss 0.01

    An issue in Advanced Plugins reportsstatistics v1.3.20 and before allows a remote attacker to execute arbitrary code via the Sales Reports, Statistics, Custom Fields & Export module.

  • CVE-2024-29027CriMar 19, 2024
    risk 0.52cvss 9.0epss 0.01

    Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Prior to versions 6.5.5 and 7.0.0-alpha.29, calling an invalid Parse Server Cloud Function name or Cloud Job name crashes the server and may allow for code injection, internal…

  • CVE-2024-28303CriMar 19, 2024
    risk 0.64cvss 9.8epss 0.01

    Open Source Medicine Ordering System v1.0 was discovered to contain a SQL injection vulnerability via the date parameter at /admin/reports/index.php.

  • CVE-2024-29135CriMar 19, 2024
    risk 0.64cvss 9.9epss 0.01

    Unrestricted Upload of File with Dangerous Type vulnerability in Themefic Tourfic tourfic.This issue affects Tourfic: from n/a through <= 2.11.15.

  • CVE-2024-2636CriMar 19, 2024
    risk 0.59cvss 9.0epss 0.01

    An Unrestricted Upload of File vulnerability has been found on Cegid Meta4 HR, that allows an attacker to upload malicios files to the server via '/config/espanol/update_password.jsp' file. Modifying the 'M4_NEW_PASSWORD' parameter, an attacker could store a malicious JSP file…

  • CVE-2024-2615CriMar 19, 2024
    risk 0.64cvss 9.8epss 0.01

    Memory safety bugs present in Firefox 123. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 124.

  • CVE-2023-40276CriMar 19, 2024
    risk 0.59cvss 9.1epss 0.01

    An issue was discovered in OpenClinic GA 5.247.01. An Unauthenticated File Download vulnerability has been discovered in pharmacy/exportFile.jsp.

  • CVE-2023-40275CriMar 19, 2024
    risk 0.59cvss 9.1epss 0.01

    An issue was discovered in OpenClinic GA 5.247.01. It allows retrieval of patient lists via queries such as findFirstname= to _common/search/searchByAjax/patientslistShow.jsp.

  • CVE-2024-24578CriMar 18, 2024
    risk 0.69cvss 10.0epss 0.09

    RaspberryMatic is an open-source operating system for HomeMatic internet-of-things devices. RaspberryMatic / OCCU prior to version 3.75.6.20240316 contains a unauthenticated remote code execution (RCE) vulnerability, caused by multiple issues within the Java based…

  • CVE-2024-21652CriMar 18, 2024
    risk 0.57cvss 9.8epss 0.01

    Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. Prior to versions 2.8.13, 2.9.9, and 2.10.4, an attacker can exploit a chain of vulnerabilities, including a Denial of Service (DoS) flaw and in-memory data storage weakness, to effectively bypass the…

  • CVE-2024-2051CriMar 18, 2024
    risk 0.64cvss 9.8epss 0.01

    CWE-307: Improper Restriction of Excessive Authentication Attempts vulnerability exists that could cause account takeover and unauthorized access to the system when an attacker conducts brute-force attacks against the login form.

  • CVE-2024-2599CriMar 18, 2024
    risk 0.64cvss 9.9epss 0.01

    File upload restriction evasion vulnerability in AMSS++ version 4.31. This vulnerability could allow an authenticated user to potentially obtain RCE through webshell, compromising the entire infrastructure.

  • CVE-2024-28537CriMar 18, 2024
    risk 0.64cvss 9.8epss 0.01

    Tenda AC18 V15.03.05.05 has a stack overflow vulnerability in the page parameter of fromNatStaticSetting function.

  • CVE-2024-27768CriMar 18, 2024
    risk 0.64cvss 9.8epss 0.01

    Unitronics Unistream Unilogic – Versions prior to 1.35.227 - CWE-22: 'Path Traversal' may allow RCE

  • CVE-2024-27767CriMar 18, 2024
    risk 0.65cvss 10.0epss 0.01

    CWE-287: Improper Authentication may allow Authentication Bypass

  • CVE-2024-28125CriMar 18, 2024
    risk 0.64cvss 9.8epss 0.01

    FitNesse all releases allows a remote authenticated attacker to execute arbitrary OS commands. Note: A contributor of FitNesse has claimed that this is not a vulnerability but a product specification and this is currently under further investigation.

  • CVE-2024-29151CriMar 18, 2024
    risk 0.59cvss 9.1epss 0.00

    Rocket.Chat.Audit through 5ad78e8 depends on filecachetools, which does not exist in PyPI.

  • CVE-2021-47157CriMar 18, 2024
    risk 0.57cvss 9.8epss 0.00

    The Kossy module before 0.60 for Perl allows JSON hijacking because of X-Requested-With mishandling.

  • CVE-2021-47155CriMar 18, 2024
    risk 0.59cvss 9.1epss 0.01

    The Net::IPV4Addr module 0.10 for Perl does not properly consider extraneous zero characters in an IP address string, which (in some situations) allows attackers to bypass access control that is based on IP addresses.

  • CVE-2018-25099CriMar 18, 2024
    risk 0.57cvss 9.8epss 0.00

    In the CryptX module before 0.062 for Perl, gcm_decrypt_verify() and chacha20poly1305_decrypt_verify() do not verify the tag.

  • CVE-2022-47036CriMar 18, 2024
    risk 0.64cvss 9.8epss 0.01

    Siklu TG Terragraph devices before approximately 2.1.1 have a hardcoded root password that has been revealed via a brute force attack on an MD5 hash. It can be used for "debug login" by an admin. NOTE: the vulnerability is not fixed by the 2.1.1 firmware; instead, it is fixed in…

  • CVE-2024-27957CriMar 17, 2024
    risk 0.65cvss 10.0epss 0.01

    Unrestricted Upload of File with Dangerous Type vulnerability in Pie Register.This issue affects Pie Register: from n/a through 3.8.3.1.

  • CVE-2024-28639CriMar 16, 2024
    risk 0.64cvss 9.8epss 0.01

    Buffer Overflow vulnerability in TOTOLink X5000R V9.1.0u.6118-B20201102 and A7000R V9.1.0u.6115-B20201022, allow remote attackers to execute arbitrary code and cause a denial of service (DoS) via the IP field.

  • CVE-2024-28255CriMar 15, 2024
    risk 0.66cvss 9.8epss 0.73

    OpenMetadata is a unified platform for discovery, observability, and governance powered by a central metadata repository, in-depth lineage, and seamless team collaboration. The `JwtFilter` handles the API authentication by requiring and verifying JWT tokens. When a new request…

  • CVE-2024-28253CriMar 15, 2024
    risk 0.62cvss 9.4epss 0.13

    OpenMetadata is a unified platform for discovery, observability, and governance powered by a central metadata repository, in-depth lineage, and seamless team collaboration. `CompiledRule::validateExpression` is also called from `PolicyRepository.prepare`. `prepare()` is called…

  • CVE-2023-7017CriMar 15, 2024
    risk 0.64cvss 9.8epss 0.00

    Sciener locks' firmware update mechanism do not authenticate or validate firmware updates if passed to the lock through the Bluetooth Low Energy service. A challenge request can be sent to the lock with a command to prepare for an update, rather than an unlock request, allowing…

  • CVE-2023-7006CriMar 15, 2024
    risk 0.59cvss 9.1epss 0.01

    The unlockKey character in a lock using Sciener firmware can be brute forced through repeated challenge requests, compromising the locks integrity.

  • CVE-2024-28752CriMar 15, 2024
    risk 0.54cvss 9.3epss 0.02

    A SSRF vulnerability using the Aegis DataBinding in versions of Apache CXF before 4.0.4, 3.6.3 and 3.5.8 allows an attacker to perform SSRF style attacks on webservices that take at least one parameter of any type. Users of other data bindings (including the default databinding)…

  • CVE-2024-28354CriMar 15, 2024
    risk 0.65cvss 10.0epss 0.02

    There is a command injection vulnerability in the TRENDnet TEW-827DRU router with firmware version 2.10B01. An attacker can inject commands into the post request parameters usapps.@smb[%d].username in the apply.cgi interface, thereby gaining root shell privileges.

  • CVE-2024-25227CriMar 15, 2024
    risk 0.64cvss 9.8epss 0.01

    SQL Injection vulnerability in ABO.CMS version 5.8, allows remote attackers to execute arbitrary code, cause a denial of service (DoS), escalate privileges, and obtain sensitive information via the tb_login parameter in admin login page.

  • CVE-2024-1917CriMar 15, 2024
    risk 0.64cvss 9.8epss 0.01

    Integer Overflow or Wraparound vulnerability in Mitsubishi Electric Corporation MELSEC-Q Series and MELSEC-L Series CPU modules allows a remote unauthenticated attacker to execute malicious code on a target product by sending a specially crafted packet.

  • CVE-2024-1916CriMar 15, 2024
    risk 0.64cvss 9.8epss 0.01

    Integer Overflow or Wraparound vulnerability in Mitsubishi Electric Corporation MELSEC-Q Series and MELSEC-L Series CPU modules allows a remote unauthenticated attacker to execute malicious code on a target product by sending a specially crafted packet.

  • CVE-2024-1915CriMar 15, 2024
    risk 0.64cvss 9.8epss 0.01

    Incorrect Pointer Scaling vulnerability in Mitsubishi Electric Corporation MELSEC-Q Series and MELSEC-L Series CPU modules allows a remote unauthenticated attacker to execute malicious code on a target product by sending a specially crafted packet.

  • CVE-2024-0803CriMar 15, 2024
    risk 0.64cvss 9.8epss 0.01

    Integer Overflow or Wraparound vulnerability in Mitsubishi Electric Corporation MELSEC-Q Series and MELSEC-L Series CPU modules allows a remote unauthenticated attacker to execute malicious code on a target product by sending a specially crafted packet.

  • CVE-2024-0802CriMar 15, 2024
    risk 0.64cvss 9.8epss 0.01

    Incorrect Pointer Scaling vulnerability in Mitsubishi Electric Corporation MELSEC-Q Series and MELSEC-L Series CPU modules allows a remote unauthenticated attacker to read arbitrary information from a target product or execute malicious code on a target product by sending a…

  • CVE-2024-26503CriMar 14, 2024
    risk 0.59cvss 9.1epss 0.01

    Unrestricted File Upload vulnerability in Greek Universities Network Open eClass v.3.15 and earlier allows attackers to run arbitrary code via upload of crafted file to certbadge.php endpoint.

  • CVE-2023-42286CriMar 14, 2024
    risk 0.64cvss 9.8epss 0.01

    There is a PHP file inclusion vulnerability in the template configuration of eyoucms v1.6.4, allowing attackers to execute code or system commands through a carefully crafted malicious payload.

  • CVE-2024-28423CriMar 14, 2024
    risk 0.64cvss 9.8epss 0.01

    Airflow-Diagrams v2.1.0 was discovered to contain an arbitrary file upload vulnerability in the unsafe_load function at cli.py. This vulnerability allows attackers to execute arbitrary code via uploading a crafted YML file.

  • CVE-2024-25139CriMar 14, 2024
    risk 0.65cvss 10.0epss 0.01

    In TP-Link Omada er605 1.0.1 through (v2.6) 2.2.3, a cloud-brd binary is susceptible to an integer overflow that leads to a heap-based buffer overflow. After heap shaping, an attacker can achieve code execution in the context of the cloud-brd binary that runs at the root level.…

  • CVE-2024-28383CriMar 14, 2024
    risk 0.64cvss 9.8epss 0.01

    Tenda AX12 v1.0 v22.03.01.16 was discovered to contain a stack overflow via the ssid parameter in the sub_431CF0 function.

  • CVE-2024-28391CriMar 14, 2024
    risk 0.64cvss 9.8epss 0.01

    SQL injection vulnerability in FME Modules quickproducttable module for PrestaShop v.1.2.1 and before, allows a remote attacker to escalate privileges and obtain information via the readCsv(), displayAjaxProductChangeAttr, displayAjaxProductAddToCart, getSearchProducts, and…

  • CVE-2024-28390CriMar 14, 2024
    risk 0.64cvss 9.8epss 0.01

    An issue in Advanced Plugins ultimateimagetool module for PrestaShop before v.2.2.01, allows a remote attacker to escalate privileges and obtain sensitive information via Improper Access Control.

  • CVE-2024-28388CriMar 14, 2024
    risk 0.64cvss 9.8epss 0.01

    SQL injection vulnerability in SunnyToo stproductcomments module for PrestaShop v.1.0.5 and before, allows a remote attacker to escalate privileges and obtain sensitive information via the StProductCommentClass::getListcomments method.