VYPR

CVEs

38,124 total · page 390 of 763

  • CVE-2023-2586CriMay 22, 2023
    risk 0.59cvss 9.0epss 0.01

    Teltonika’s Remote Management System versions 4.14.0 is vulnerable to an unauthorized attacker registering previously unregistered devices through the RMS platform. If the user has not disabled the "RMS management feature" enabled by default, then an attacker could register…

  • CVE-2023-33236CriMay 22, 2023
    risk 0.64cvss 9.8epss 0.01

    MXsecurity version 1.0 is vulnearble to hardcoded credential vulnerability. This vulnerability has been reported that can be exploited to craft arbitrary JWT tokens and subsequently bypass authentication for web-based APIs.

  • CVE-2023-2713CriMay 20, 2023
    risk 0.64cvss 9.8epss 0.01

    Authorization Bypass Through User-Controlled Key vulnerability in "Rental Module" developed by third-party for Ideasoft's E-commerce Platform allows Authentication Abuse, Authentication Bypass. This issue affects Rental Module: before 23.05.15.

  • CVE-2023-2712CriMay 20, 2023
    risk 0.64cvss 9.8epss 0.01

    Unrestricted Upload of File with Dangerous Type vulnerability in "Rental Module" developed by third-party for Ideasoft's E-commerce Platform allows Command Injection, Using Malicious Files, Upload a Web Shell to a Web Server. This issue affects Rental Module: before 23.05.15.

  • CVE-2023-2276CriMay 20, 2023
    risk 0.64cvss 9.8epss 0.01

    The WCFM Membership – WooCommerce Memberships for Multivendor Marketplace plugin for WordPress is vulnerable to Insecure Direct Object References in versions up to, and including, 2.10.7. This is due to the plugin providing user-controlled access to objects, letting a user…

  • CVE-2023-31707CriMay 19, 2023
    risk 0.64cvss 9.8epss 0.01

    SEMCMS 1.5 is vulnerable to SQL Injection via Ant_Rponse.php.

  • CVE-2023-2704CriMay 19, 2023
    risk 0.64cvss 9.8epss 0.02

    The BP Social Connect plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 1.5. This is due to insufficient verification on the user being supplied during a Facebook login through the plugin. This makes it possible for unauthenticated…

  • CVE-2023-30470CriMay 18, 2023
    risk 0.00cvss 9.8epss 0.01

    A use-after-free related to unsound inference in the bytecode generation when optimizations are enabled for Hermes prior to commit da8990f737ebb9d9810633502f65ed462b819c09 could have been used by an attacker to achieve remote code execution. Note that this is only exploitable in…

  • CVE-2023-28753CriMay 18, 2023
    risk 0.00cvss 9.8epss 0.02

    netconsd prior to v0.2 was vulnerable to an integer overflow in its parse_packet function. A malicious individual could leverage this overflow to create heap memory corruption with attacker controlled data.

  • CVE-2023-28081CriMay 18, 2023
    risk 0.57cvss 9.8epss 0.01

    A bytecode optimization bug in Hermes prior to commit e6ed9c1a4b02dc219de1648f44cd808a56171b81 could be used to cause an use-after-free and obtain arbitrary code execution via a carefully crafted payload. Note that this is only exploitable in cases where Hermes is used to…

  • CVE-2023-25933CriMay 18, 2023
    risk 0.00cvss 9.8epss 0.01

    A type confusion bug in TypedArray prior to commit e6ed9c1a4b02dc219de1648f44cd808a56171b81 could have been used by a malicious attacker to execute arbitrary code via untrusted JavaScript. Note that this is only exploitable in cases where Hermes is used to execute untrusted…

  • CVE-2023-23557CriMay 18, 2023
    risk 0.00cvss 9.8epss 0.01

    An error in Hermes' algorithm for copying objects properties prior to commit a00d237346894c6067a594983be6634f4168c9ad could be used by a malicious attacker to execute arbitrary code via type confusion. Note that this is only exploitable in cases where Hermes is used to execute…

  • CVE-2023-23556CriMay 18, 2023
    risk 0.00cvss 9.8epss 0.01

    An error in BigInt conversion to Number in Hermes prior to commit a6dcafe6ded8e61658b40f5699878cd19a481f80 could have been used by a malicious attacker to execute arbitrary code due to an out-of-bound write. Note that this bug is only exploitable in cases where Hermes is used to…

  • CVE-2023-2024CriMay 18, 2023
    risk 0.65cvss 10.0epss 0.01

    Improper authentication in OpenBlue Enterprise Manager Data Collector versions prior to 3.2.5.75 allow access to an unauthorized user under certain circumstances.

  • CVE-2023-30333CriMay 18, 2023
    risk 0.64cvss 9.8epss 0.01

    An arbitrary file upload vulnerability in the component /admin/ThemeController.java of PerfreeBlog v3.1.2 allows attackers to execute arbitrary code via a crafted file.

  • CVE-2023-27217CriMay 18, 2023
    risk 0.64cvss 9.8epss 0.01

    A stack-based buffer overflow in the ChangeFriendlyName() function of Belkin Smart Outlet V2 F7c063 firmware_2.00.11420.OWRT.PVT_SNSV2 allows attackers to cause a Denial of Service (DoS) via a crafted UPNP request.

  • CVE-2023-31729CriMay 18, 2023
    risk 0.64cvss 9.8epss 0.01

    TOTOLINK A3300R v17.0.0cu.557 is vulnerable to Command Injection via /cgi-bin/cstecgi.cgi.

  • CVE-2023-29985CriMay 18, 2023
    risk 0.64cvss 9.8epss 0.01

    Sourcecodester Student Study Center Desk Management System v1.0 admin\reports\index.php#date_from has a SQL Injection vulnerability.

  • CVE-2023-2319CriMay 17, 2023
    risk 0.64cvss 9.8epss 0.01

    It was discovered that an update for PCS package in RHBA-2023:2151 erratum released as part of Red Hat Enterprise Linux 9.2 failed to include the fix for the Webpack issue CVE-2023-28154 (for PCS package), which was previously addressed in Red Hat Enterprise Linux 9.1 via…

  • CVE-2023-2780CriMay 17, 2023
    risk 0.57cvss 9.8epss 0.06

    Path Traversal: '\..\filename' in GitHub repository mlflow/mlflow prior to 2.3.1.

  • CVE-2023-30191CriMay 17, 2023
    risk 0.64cvss 9.8epss 0.01

    PrestaShop cdesigner < 3.1.9 is vulnerable to SQL Injection via CdesignerTraitementModuleFrontController::initContent().

  • CVE-2023-31903CriMay 17, 2023
    risk 0.64cvss 9.8epss 0.02

    GuppY CMS 6.00.10 is vulnerable to Unrestricted File Upload which allows remote attackers to execute arbitrary code by uploading a php file.

  • CVE-2023-31902CriMay 17, 2023
    risk 0.67cvss 9.8epss 0.09

    RPA Technology Mobile Mouse 3.6.0.4 is vulnerable to Remote Code Execution (RCE).

  • CVE-2023-31703CriMay 17, 2023
    risk 0.62cvss 9.0epss 0.04

    Cross Site Scripting (XSS) in the edit user form in Microworld Technologies eScan management console 14.0.1400.2281 allows remote attacker to inject arbitrary code via the from parameter.

  • CVE-2023-30438CriMay 17, 2023
    risk 0.60cvss 9.3epss 0.00

    An internally discovered vulnerability in PowerVM on IBM Power9 and Power10 systems could allow an attacker with privileged user access to a logical partition to perform an undetected violation of the isolation between logical partitions which could lead to data leakage or the…

  • CVE-2023-30189CriMay 16, 2023
    risk 0.64cvss 9.8epss 0.01

    Prestashop posstaticblocks <= 1.0.0 is vulnerable to SQL Injection via posstaticblocks::getPosCurrentHook().

  • CVE-2023-27742CriMay 16, 2023
    risk 0.64cvss 9.8epss 0.01

    IDURAR ERP/CRM v1 was discovered to contain a SQL injection vulnerability via the component /api/login.

  • CVE-2023-31890CriMay 16, 2023
    risk 0.64cvss 9.8epss 0.01

    An XML Deserialization vulnerability in glazedlists v1.11.0 allows an attacker to execute arbitrary code via the BeanXMLByteCoder.decode() parameter.

  • CVE-2023-31857CriMay 16, 2023
    risk 0.64cvss 9.8epss 0.02

    Sourcecodester Online Computer and Laptop Store 1.0 allows unrestricted file upload and can lead to remote code execution. The vulnerability path is /classes/Users.php?f=save.

  • CVE-2023-31856CriMay 16, 2023
    risk 0.64cvss 9.8epss 0.03

    A command injection vulnerability in the hostTime parameter in the function NTPSyncWithHostof TOTOLINK CP300+ V5.2cu.7594_B20200910 allows attackers to execute arbitrary commands via a crafted http packet.

  • CVE-2023-31587CriMay 16, 2023
    risk 0.64cvss 9.8epss 0.02

    Tenda AC5 router V15.03.06.28 was discovered to contain a remote code execution (RCE) vulnerability via the Mac parameter at ip/goform/WriteFacMac.

  • CVE-2023-31519CriMay 16, 2023
    risk 0.64cvss 9.8epss 0.01

    Pharmacy Management System v1.0 was discovered to contain a SQL injection vulnerability via the email parameter at login_core.php.

  • CVE-2023-2499CriMay 16, 2023
    risk 0.64cvss 9.8epss 0.01

    The RegistrationMagic plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 5.2.1.0. This is due to insufficient verification on the user being supplied during a Google social login through the plugin. This makes it possible for…

  • CVE-2023-32956CriMay 16, 2023
    risk 0.64cvss 9.8epss 0.02

    Improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability in CGI component in Synology Router Manager (SRM) before 1.2.5-8227-6 and 1.3.1-9346-3 allows remote attackers to execute arbitrary code via unspecified vectors.

  • CVE-2023-29961CriMay 16, 2023
    risk 0.64cvss 9.8epss 0.01

    D-Link DIR-605L firmware version 1.17B01 BETA is vulnerable to stack overflow via /goform/formTcpipSetup,

  • CVE-2021-0877CriMay 15, 2023
    risk 0.64cvss 9.8epss 0.00

    Product: AndroidVersions: Android SoCAndroid ID: A-273754094

  • CVE-2023-32314CriMay 15, 2023
    risk 0.57cvss 9.8epss 0.08

    vm2 is a sandbox that can run untrusted code with Node's built-in modules. A sandbox escape vulnerability exists in vm2 for versions up to and including 3.9.17. It abuses an unexpected creation of a host object based on the specification of `Proxy`. As a result a threat actor…

  • CVE-2023-30245CriMay 15, 2023
    risk 0.64cvss 9.8epss 0.01

    SQL injection vulnerability found in Judging Management System v.1.0 allows a remote attacker to execute arbitrary code via the crit_id parameter of the edit_criteria.php file.

  • CVE-2023-29861CriMay 15, 2023
    risk 0.64cvss 9.8epss 0.02

    An issue found in FLIR-DVTEL version not specified allows a remote attacker to execute arbitrary code via a crafted request to the management page of the device.

  • CVE-2023-29862CriMay 15, 2023
    risk 0.64cvss 9.8epss 0.02

    An issue found in Agasio-Camera device version not specified allows a remote attacker to execute arbitrary code via the check and authLevel parameters.

  • CVE-2023-0600CriMay 15, 2023
    risk 0.64cvss 9.8epss 0.04

    The WP Visitor Statistics (Real Time Traffic) WordPress plugin before 6.9 does not escape user input which is concatenated to an SQL query, allowing unauthenticated visitors to conduct SQL Injection attacks.

  • CVE-2022-4774CriMay 15, 2023
    risk 0.64cvss 9.8epss 0.02

    The Bit Form WordPress plugin before 1.9 does not validate the file types uploaded via it's file upload form field, allowing unauthenticated users to upload arbitrary files types such as PHP or HTML files to the server, leading to Remote Code Execution.

  • CVE-2023-31986CriMay 15, 2023
    risk 0.64cvss 9.8epss 0.08

    A Command Injection vulnerability in Edimax Wireless Router N300 Firmware BR-6428NS_v4 allows attacker to execute arbitrary code via the setWAN function in /bin/webs without any limitations.

  • CVE-2022-47937CriMay 15, 2023
    risk 0.64cvss 9.8epss 0.02

    Improper input validation in the Apache Sling Commons JSON bundle allows an attacker to trigger unexpected errors by supplying specially-crafted input. The org.apache.sling.commons.json bundle has been deprecated as of March 2017 and should not be used anymore. Consumers are…

  • CVE-2023-1698CriMay 15, 2023
    risk 0.70cvss 9.8epss 0.82

    In multiple products of WAGO a vulnerability allows an unauthenticated, remote attacker to create new users and change the device configuration which can result in unintended behaviour, Denial of Service and full system compromise.

  • CVE-2023-1096CriMay 12, 2023
    risk 0.64cvss 9.8epss 0.01

    SnapCenter versions 4.7 prior to 4.7P2 and 4.8 prior to 4.8P1 are susceptible to a vulnerability which could allow a remote unauthenticated attacker to gain access as an admin user.

  • CVE-2023-30247CriMay 12, 2023
    risk 0.64cvss 9.8epss 0.01

    File Upload vulnerability found in Oretnom23 Storage Unit Rental Management System v.1.0 allows a remote attacker to execute arbitrary code via the update_settings parameter.

  • CVE-2023-31983CriMay 12, 2023
    risk 0.66cvss 9.8epss 0.25

    A Command Injection vulnerability in Edimax Wireless Router N300 Firmware BR-6428NS_v4 allows attacker to execute arbitrary code via the mp function in /bin/webs without any limitations.

  • CVE-2023-27823CriMay 12, 2023
    risk 0.71cvss 9.8epss 0.54

    An authentication bypass in Optoma 1080PSTX C02 allows an attacker to access the administration console without valid credentials.

  • CVE-2023-1934CriMay 12, 2023
    risk 0.67cvss 9.8epss 0.08

    The PnPSCADA system, a product of SDG Technologies CC, is afflicted by a critical unauthenticated error-based PostgreSQL Injection vulnerability. Present within the hitlogcsv.jsp endpoint, this security flaw permits unauthenticated attackers to engage with the underlying…