VYPR

CVEs

38,104 total · page 398 of 763

  • CVE-2021-31707CriApr 4, 2023
    risk 0.64cvss 9.8epss 0.01

    Permissions vulnerability found in KiteCMS allows a remote attacker to execute arbitrary code via the upload file type.

  • CVE-2021-28235CriApr 4, 2023
    risk 0.64cvss 9.8epss 0.02

    Authentication vulnerability found in Etcd-io v.3.4.10 allows remote attackers to escalate privileges via the debug function.

  • CVE-2020-29312CriApr 4, 2023
    risk 0.64cvss 9.8epss 0.01

    An issue found in Zend Framework v.3.1.3 and before allow a remote attacker to execute arbitrary code via the unserialize function. Note: This has been disputed by third parties as incomplete and incorrect. The framework does not have a version that surpasses 2.x.x and was…

  • CVE-2020-21487CriApr 4, 2023
    risk 0.62cvss 9.6epss 0.01

    Cross Site Scripting vulnerability found in Netgate pfSense 2.4.4 and ACME package v.0.6.3 allows attackers to execute arbitrary code via the RootFolder field of acme_certificates.php.

  • CVE-2020-20915CriApr 4, 2023
    risk 0.64cvss 9.8epss 0.01

    SQL Injection vulnerability found in PublicCMS v.4.0 allows a remote attacker to execute arbitrary code via sql parameter of the the SysSiteAdminControl.

  • CVE-2020-20914CriApr 4, 2023
    risk 0.64cvss 9.8epss 0.01

    SQL Injection vulnerability found in San Luan PublicCMS v.4.0 allows a remote attacker to execute arbitrary code via the sql parameter.

  • CVE-2020-20913CriApr 4, 2023
    risk 0.64cvss 9.8epss 0.01

    SQL Injection vulnerability found in Ming-Soft MCMS v.4.7.2 allows a remote attacker to execute arbitrary code via basic_title parameter.

  • CVE-2020-19695CriApr 4, 2023
    risk 0.64cvss 9.8epss 0.01

    Buffer Overflow found in Nginx NJS allows a remote attacker to execute arbitrary code via the njs_object_property parameter of the njs/njs_vm.c function.

  • CVE-2020-19693CriApr 4, 2023
    risk 0.64cvss 9.8epss 0.01

    An issue found in Espruino Espruino 6ea4c0a allows an attacker to execute arbitrrary code via oldFunc parameter of the jswrap_object.c:jswrap_function_replacewith endpoint.

  • CVE-2020-19692CriApr 4, 2023
    risk 0.64cvss 9.8epss 0.01

    Buffer Overflow vulnerabilty found in Nginx NJS v.0feca92 allows a remote attacker to execute arbitrary code via the njs_module_read in the njs_module.c file.

  • CVE-2020-19279CriApr 4, 2023
    risk 0.64cvss 9.8epss 0.01

    Directory Traversal vulnerability found in B3log Wide allows a an attacker to escalate privileges via symbolic links.

  • CVE-2023-26866CriApr 4, 2023
    risk 0.64cvss 9.8epss 0.02

    GreenPacket OH736's WR-1200 Indoor Unit, OT-235 with firmware versions M-IDU-1.6.0.3_V1.1 and MH-46360-2.0.3-R5-GP respectively are vulnerable to remote command injection. Commands are executed using pre-login execution and executed with root privileges allowing complete…

  • CVE-2023-1671CriKEVApr 4, 2023
    risk 0.87cvss 9.8epss 1.00

    A pre-auth command injection vulnerability in the warn-proceed handler of Sophos Web Appliance older than version 4.3.10.4 allows execution of arbitrary code.

  • CVE-2023-1728CriApr 4, 2023
    risk 0.64cvss 9.8epss 0.01

    Unrestricted Upload of File with Dangerous Type vulnerability in Fernus Informatics LMS allows OS Command Injection, Server Side Include (SSI) Injection. This issue affects LMS: before 23.04.03.

  • CVE-2022-38923CriApr 3, 2023
    risk 0.64cvss 9.8epss 0.01

    BluePage CMS thru v3.9 processes an insufficiently sanitized HTTP Header allowing MySQL Injection in the 'User-Agent' field using a Time-based blind SLEEP payload.

  • CVE-2022-38922CriApr 3, 2023
    risk 0.64cvss 9.8epss 0.01

    BluePage CMS thru 3.9 processes an insufficiently sanitized HTTP Header Cookie value allowing MySQL Injection in the 'users-cookie-settings' token using a Time-based blind SLEEP payload.

  • CVE-2023-1765CriApr 3, 2023
    risk 0.64cvss 9.8epss 0.01

    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Akbim Computer Panon allows SQL Injection. This issue affects Panon: before 1.0.2.

  • CVE-2023-26119CriApr 3, 2023
    risk 0.57cvss 9.8epss 0.03

    Versions of the package net.sourceforge.htmlunit:htmlunit from 0 and before 3.0.0 are vulnerable to Remote Code Execution (RCE) via XSTL, when browsing the attacker’s webpage.

  • CVE-2023-28677CriApr 2, 2023
    risk 0.64cvss 9.8epss 0.01

    Jenkins Convert To Pipeline Plugin 1.0 and earlier uses basic string concatenation to convert Freestyle projects' Build Environment, Build Steps, and Post-build Actions to the equivalent Pipeline step invocations, allowing attackers able to configure Freestyle projects to…

  • CVE-2023-28668CriApr 2, 2023
    risk 0.57cvss 9.8epss 0.01

    Jenkins Role-based Authorization Strategy Plugin 587.v2872c41fa_e51 and earlier grants permissions even after they've been disabled.

  • CVE-2022-42447CriApr 2, 2023
    risk 0.62cvss 9.6epss 0.00

    HCL Compass is vulnerable to Cross-Origin Resource Sharing (CORS). This vulnerability can allow an unprivileged remote attacker to trick a legitimate user into accessing a special resource and executing a malicious request.

  • CVE-2023-26822CriApr 1, 2023
    risk 0.64cvss 9.8epss 0.03

    D-Link Go-RT-AC750 revA_v101b03 was discovered to contain a command injection vulnerability via the service parameter at soapcgi.main.

  • CVE-2023-1789CriApr 1, 2023
    risk 0.57cvss 9.8epss 0.00

    Improper Input Validation in GitHub repository firefly-iii/firefly-iii prior to 6.0.0.

  • CVE-2022-47190CriMar 31, 2023
    risk 0.65cvss 10.0epss 0.02

    Generex UPS CS141 below 2.06 version, could allow a remote attacker to upload a firmware file containing a webshell that could allow him to execute arbitrary code as root.

  • CVE-2023-27162CriMar 31, 2023
    risk 0.59cvss 9.1epss 0.01

    openapi-generator up to v6.4.0 was discovered to contain a Server-Side Request Forgery (SSRF) via the component /api/gen/clients/{language}. This vulnerability allows attackers to access network resources and sensitive information via a crafted API request.

  • CVE-2023-26858CriMar 31, 2023
    risk 0.64cvss 9.8epss 0.01

    SQL injection vulnerability found in PrestaSHp faqs v.3.1.6 allows a remote attacker to escalate privileges via the faqsBudgetModuleFrontController::displayAjaxGenerateBudget component.

  • CVE-2023-29141CriMar 31, 2023
    risk 0.64cvss 9.8epss 0.01

    An issue was discovered in MediaWiki before 1.35.10, 1.36.x through 1.38.x before 1.38.6, and 1.39.x before 1.39.3. An auto-block can occur for an untrusted X-Forwarded-For header.

  • CVE-2023-23594CriMar 31, 2023
    risk 0.64cvss 9.8epss 0.01

    An authentication bypass vulnerability in the web client interface for the CL4NX printer before firmware version 1.13.3-u724_r2 provides remote unauthenticated attackers with access to execute commands intended only for valid/authenticated users, such as file uploads and…

  • CVE-2023-28843CriMar 31, 2023
    risk 0.00cvss 9.8epss 0.01

    PrestaShop/paypal is an open source module for the PrestaShop web commerce ecosystem which provides paypal payment support. A SQL injection vulnerability found in the PrestaShop paypal module from release from 3.12.0 to and including 3.16.3 allow a remote attacker to gain…

  • CVE-2023-28879CriMar 31, 2023
    risk 0.64cvss 9.8epss 0.06

    In Artifex Ghostscript through 10.01.0, there is a buffer overflow leading to potential corruption of data internal to the PostScript interpreter, in base/sbcp.c. This affects BCPEncode, BCPDecode, TBCPEncode, and TBCPDecode. If the write buffer is filled to one byte less than…

  • CVE-2023-28862CriMar 31, 2023
    risk 0.64cvss 9.8epss 0.01

    An issue was discovered in LemonLDAP::NG before 2.16.1. Weak session ID generation in the AuthBasic handler and incorrect failure handling during a password check allow attackers to bypass 2FA verification. Any plugin that tries to deny session creation after the store step does…

  • CVE-2023-26829CriMar 31, 2023
    risk 0.64cvss 9.8epss 0.01

    An authentication bypass vulnerability in the Password Reset component of Gladinet CentreStack before 13.5.9808 allows remote attackers to set a new password for any valid user account, without needing the previous known password, resulting in a full authentication bypass.

  • CVE-2023-0432CriMar 31, 2023
    risk 0.59cvss 9.0epss 0.01

    The web configuration service of the affected device contains an authenticated command injection vulnerability. It can be used to execute system commands on the operating system (OS) from the device in the context of the user "root." If the attacker has credentials for the web…

  • CVE-2023-0344CriMar 31, 2023
    risk 0.59cvss 9.1epss 0.01

    Akuvox E11 appears to be using a custom version of dropbear SSH server. This server allows an insecure option that by default is not in the official dropbear SSH server.

  • CVE-2023-28727CriMar 31, 2023
    risk 0.62cvss 9.6epss 0.00

    Panasonic AiSEG2 versions 2.00J through 2.93A allows adjacent attackers bypass authentication due to mishandling of X-Forwarded-For headers.

  • CVE-2023-28462CriMar 30, 2023
    risk 0.64cvss 9.8epss 0.01

    A JNDI rebind operation in the default ORB listener in Payara Server 4.1.2.191 (Enterprise), 5.20.0 and newer (Enterprise), and 5.2020.1 and newer (Community), when Java 1.8u181 and earlier is used, allows remote attackers to load malicious code on the server once a JNDI…

  • CVE-2023-26482CriMar 30, 2023
    risk 0.03cvss 9.0epss 0.04

    Nextcloud server is an open source home cloud implementation. In affected versions a missing scope validation allowed users to create workflows which are designed to be only available for administrators. Some workflows are designed to be RCE by invoking defined scripts, in order…

  • CVE-2023-25076CriMar 30, 2023
    risk 0.05cvss 9.8epss 0.66

    A buffer overflow vulnerability exists in the handling of wildcard backend hosts of SNIProxy 0.6.0-2 and the master branch (commit: 822bb80df9b7b345cc9eba55df74a07b498819ba). A specially crafted HTTP or TLS packet can lead to arbitrary code execution. An attacker could send a…

  • CVE-2023-1725CriMar 30, 2023
    risk 0.64cvss 9.8epss 0.01

    Server-Side Request Forgery (SSRF) vulnerability in Infoline Project Management System allows Server Side Request Forgery. This issue affects Project Management System: before 4.09.31.125.

  • CVE-2023-28731CriMar 30, 2023
    risk 0.64cvss 9.8epss 0.02

    AnyMailing Joomla Plugin is vulnerable to unauthenticated remote code execution, when being granted access to the campaign's creation on front-office due to unrestricted file upload allowing PHP code to be injected. This issue affects AnyMailing Joomla Plugin Enterprise…

  • CVE-2023-1712CriMar 30, 2023
    risk 0.57cvss 9.8epss 0.01

    Use of Hard-coded, Security-relevant Constants in GitHub repository deepset-ai/haystack prior to 0.1.30.

  • CVE-2023-28507CriMar 29, 2023
    risk 0.64cvss 9.8epss 0.01

    Rocket Software UniData versions prior to 8.2.4 build 3003 and UniVerse versions prior to 11.3.5 build 1001 or 12.2.1 build 2002 suffer from a memory-exhaustion issue, where a decompression routine will allocate increasing amounts of memory until all system memory is exhausted…

  • CVE-2023-28504CriMar 29, 2023
    risk 0.64cvss 9.8epss 0.01

    Rocket Software UniData versions prior to 8.2.4 build 3003 and UniVerse versions prior to 11.3.5 build 1001 or 12.2.1 build 2002 suffer from a stack-based buffer overflow that can lead to remote code execution as the root user.

  • CVE-2023-28503CriMar 29, 2023
    risk 0.72cvss 9.8epss 0.62

    Rocket Software UniData versions prior to 8.2.4 build 3003 and UniVerse versions prior to 11.3.5 build 1001 or 12.2.1 build 2002 suffer from an authentication bypass vulnerability, where a special username with a deterministic password can be leveraged to bypass authentication…

  • CVE-2023-28502CriMar 29, 2023
    risk 0.72cvss 9.8epss 0.61

    Rocket Software UniData versions prior to 8.2.4 build 3003 and UniVerse versions prior to 11.3.5 build 1001 or 12.2.1 build 2002 suffer from a stack-based buffer overflow in the "udadmin" service that can lead to remote code execution as the root user.

  • CVE-2023-28501CriMar 29, 2023
    risk 0.64cvss 9.8epss 0.01

    Rocket Software UniData versions prior to 8.2.4 build 3003 and UniVerse versions prior to 11.3.5 build 1001 or 12.2.1 build 2002 suffer from a heap-based buffer overflow in the unirpcd daemon that, if successfully exploited, can lead to remote code execution as the root user.

  • CVE-2022-43634CriMar 29, 2023
    risk 0.02cvss 9.8epss 0.19

    This vulnerability allows remote attackers to execute arbitrary code on affected installations of Netatalk. Authentication is not required to exploit this vulnerability. The specific flaw exists within the dsi_writeinit function. The issue results from the lack of proper…

  • CVE-2022-36983CriMar 29, 2023
    risk 0.64cvss 9.8epss 0.05

    This vulnerability allows remote attackers to bypass authentication on affected installations of Ivanti Avalanche. Authentication is not required to exploit this vulnerability. The specific flaw exists within the SetSettings class. The issue results from the lack of…

  • CVE-2022-36981CriMar 29, 2023
    risk 0.70cvss 9.8epss 0.83

    This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ivanti Avalanche 6.3.3.101. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed. The specific flaw exists within…

  • CVE-2022-36979CriMar 29, 2023
    risk 0.64cvss 9.8epss 0.07

    This vulnerability allows remote attackers to bypass authentication on affected installations of Ivanti Avalanche 6.3.2.3490. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed. The specific flaw exists within…