VYPR

CVEs

38,098 total · page 411 of 762

  • CVE-2023-24165CriJan 26, 2023
    risk 0.64cvss 9.8epss 0.01

    Tenda AC18 V15.03.05.19 is vulnerable to Buffer Overflow via /goform/initIpAddrInfo.

  • CVE-2023-24164CriJan 26, 2023
    risk 0.64cvss 9.8epss 0.01

    Tenda AC18 V15.03.05.19 is vulnerable to Buffer Overflow via /goform/FUN_000c2318.

  • CVE-2023-24022CriJan 26, 2023
    risk 0.65cvss 10.0epss 0.02

    Baicells Nova 227, Nova 233, and Nova 243 LTE TDD eNodeB devices with firmware through RTS/RTD 3.7.11.3 have hardcoded credentials that are easily discovered and can be used by remote attackers to authenticate via ssh. (The credentials are stored in the firmware, encrypted by…

  • CVE-2023-23619CriJan 26, 2023
    risk 0.64cvss 9.9epss 0.01

    Modelina is a library for generating data models based on inputs such as AsyncAPI, OpenAPI, or JSON Schema documents. Versions prior to 1.0.0 are vulnerable to Code injection. This issue affects anyone who is using the default presets and/or does not handle the functionality…

  • CVE-2023-22482CriJan 26, 2023
    risk 0.59cvss 9.0epss 0.01

    Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. Versions of Argo CD starting with v1.8.2 and prior to 2.3.13, 2.4.19, 2.5.6, and 2.6.0-rc-3 are vulnerable to an improper authorization bug causing the API to accept certain invalid tokens. OIDC providers…

  • CVE-2023-0452CriJan 26, 2023
    risk 0.64cvss 9.8epss 0.01

    Econolite EOS versions prior to 3.2.23 use a weak hash algorithm for encrypting privileged user credentials. A configuration file that is accessible without authentication uses MD5 hashes for encrypting credentials, including those of administrators and technicians.

  • CVE-2023-0321CriJan 26, 2023
    risk 0.59cvss 9.1epss 0.01

    Campbell Scientific dataloggers CR6, CR300, CR800, CR1000 and CR3000 may allow an attacker to download configuration files, which may contain sensitive information about the internal network. From factory defaults, the mentioned datalogges have HTTP and PakBus enabled. The…

  • CVE-2022-47767CriJan 26, 2023
    risk 0.64cvss 9.8epss 0.01

    A backdoor in Solar-Log Gateway products allows remote access via web panel gaining super administration privileges to the attacker. This affects Solar-Log devices that use firmware version v4.2.7 up to v5.1.1 (included). This does not exist in SL 200, 500, 1000 / fixed in 4.2.8…

  • CVE-2022-47615CriJan 26, 2023
    risk 0.61cvss 9.3epss 0.05

    Local File Inclusion vulnerability in LearnPress – WordPress LMS Plugin <= 4.1.7.3.2 versions.

  • CVE-2022-46999CriJan 26, 2023
    risk 0.64cvss 9.8epss 0.01

    Tuzicms v2.0.6 was discovered to contain a SQL injection vulnerability via the component \App\Manage\Controller\UserController.class.php.

  • CVE-2022-46998CriJan 26, 2023
    risk 0.64cvss 9.8epss 0.01

    An issue in the website background of taocms v3.0.2 allows attackers to execute a Server-Side Request Forgery (SSRF).

  • CVE-2022-45820CriJan 26, 2023
    risk 0.59cvss 9.1epss 0.01

    SQL Injection (SQLi) vulnerability in LearnPress – WordPress LMS Plugin <= 4.1.7.3.2 versions.

  • CVE-2022-45808CriJan 26, 2023
    risk 0.65cvss 9.9epss 0.04

    SQL Injection vulnerability in LearnPress – WordPress LMS Plugin <= 4.1.7.3.2 versions.

  • CVE-2022-44297CriJan 26, 2023
    risk 0.64cvss 9.8epss 0.01

    SiteServer CMS 7.1.3 has a SQL injection vulnerability the background.

  • CVE-2022-40037CriJan 26, 2023
    risk 0.64cvss 9.8epss 0.02

    An issue discovered in Rawchen blog-ssm v1.0 allows remote attacker to escalate privileges and execute arbitrary commands via the component /upFile.

  • CVE-2022-3572CriJan 26, 2023
    risk 0.61cvss 9.3epss 0.01

    A cross-site scripting issue has been discovered in GitLab CE/EE affecting all versions from 13.5 prior to 15.3.5, 15.4 prior to 15.4.4, and 15.5 prior to 15.5.2. It was possible to exploit a vulnerability in setting the Jira Connect integration which could lead to a reflected…

  • CVE-2022-31706CriJan 26, 2023
    risk 0.74cvss 9.8epss 0.87

    The vRealize Log Insight contains a Directory Traversal Vulnerability. An unauthenticated, malicious actor can inject files into the operating system of an impacted appliance which can result in remote code execution.

  • CVE-2022-31704CriJan 26, 2023
    risk 0.73cvss 9.8epss 0.81

    The vRealize Log Insight contains a broken access control vulnerability. An unauthenticated malicious actor can remotely inject code into sensitive files of an impacted appliance which can result in remote code execution.

  • CVE-2022-25894CriJan 26, 2023
    risk 0.64cvss 9.8epss 0.03

    All versions of the package com.bstek.uflo:uflo-core are vulnerable to Remote Code Execution (RCE) in the ExpressionContextImpl class via jexl.createExpression(expression).evaluate(context); functionality, due to improper user input validation.

  • CVE-2020-22452CriJan 26, 2023
    risk 0.57cvss 9.8epss 0.02

    SQL Injection vulnerability in function getTableCreationQuery in CreateAddField.php in phpMyAdmin 5.x before 5.2.0 via the tbl_storage_engine or tbl_collation parameters to tbl_create.php.

  • CVE-2020-18331CriJan 26, 2023
    risk 0.59cvss 9.1epss 0.01

    Directory traversal vulnerability in ChinaMobile PLC Wireless Router model GPN2.4P21-C-CN running the firmware version W2000EN-01(hardware platform Gpn2.4P21-C_WIFI-V0.05), via the getpage parameter to /cgi-bin/webproc.

  • CVE-2020-18330CriJan 26, 2023
    risk 0.59cvss 9.1epss 0.01

    An issue was discovered in the default configuration of ChinaMobile PLC Wireless Router model GPN2.4P21-C-CN running the firmware version W2000EN-01(hardware platform Gpn2.4P21-C_WIFI-V0.05), allows attackers to gain access to the configuration interface.

  • CVE-2022-3806CriJan 25, 2023
    risk 0.64cvss 9.8epss 0.01

    Inconsistent handling of error cases in bluetooth hci may lead to a double free condition of a network buffer.

  • CVE-2023-23331CriJan 24, 2023
    risk 0.64cvss 9.8epss 0.01

    Amano Xoffice parking solutions 7.1.3879 is vulnerable to SQL Injection.

  • CVE-2023-23560CriJan 23, 2023
    risk 0.65cvss 9.8epss 0.14

    In certain Lexmark products through 2023-01-12, SSRF can occur because of a lack of input validation.

  • CVE-2022-4693CriJan 23, 2023
    risk 0.64cvss 9.8epss 0.02

    The User Verification WordPress plugin before 1.0.94 was affected by an Auth Bypass security vulnerability. To bypass authentication, we only need to know the user’s username. Depending on whose username we know, which can be easily queried because it is usually public data,…

  • CVE-2022-4383CriJan 23, 2023
    risk 0.64cvss 9.8epss 0.01

    The CBX Petition for WordPress plugin through 1.0.3 does not properly sanitize and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection.

  • CVE-2022-4305CriJan 23, 2023
    risk 0.67cvss 9.8epss 0.39

    The Login as User or Customer WordPress plugin before 3.3 lacks authorization checks to ensure that users are allowed to log in as another one, which could allow unauthenticated attackers to obtain a valid admin session.

  • CVE-2022-0316CriJan 23, 2023
    risk 0.64cvss 9.8epss 0.02

    The WeStand WordPress theme before 2.1, footysquare WordPress theme, aidreform WordPress theme, statfort WordPress theme, club-theme WordPress theme, kingclub-theme WordPress theme, spikes WordPress theme, spikes-black WordPress theme, soundblast WordPress theme, bolster…

  • CVE-2021-43445CriJan 23, 2023
    risk 0.64cvss 9.8epss 0.02

    ONLYOFFICE all versions as of 2021-11-08 is affected by Incorrect Access Control. An attacker can authenticate with the web socket service of the ONLYOFFICE document editor which is protected by JWT auth by using a default JWT signing key.

  • CVE-2023-0435CriJan 22, 2023
    risk 0.57cvss 9.8epss 0.01

    Excessive Attack Surface in GitHub repository pyload/pyload prior to 0.5.0b3.dev41.

  • CVE-2023-22884CriJan 21, 2023
    risk 0.58cvss 9.8epss 0.11

    Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in Apache Software Foundation Apache Airflow, Apache Software Foundation Apache Airflow MySQL Provider.This issue affects Apache Airflow: before 2.5.1; Apache Airflow MySQL…

  • CVE-2023-24028CriJan 20, 2023
    risk 0.00cvss 9.8epss 0.01

    In MISP 2.4.167, app/Controller/Component/ACLComponent.php has incorrect access control for the decaying import function.

  • CVE-2023-0052CriJan 20, 2023
    risk 0.64cvss 9.8epss 0.01

    SAUTER Controls Nova 200–220 Series with firmware version 3.3-006 and prior and BACnetstac version 4.2.1 and prior allows the execution of commands without credentials. As Telnet and file transfer protocol (FTP) are the only protocols available for device management, an…

  • CVE-2023-23607CriJan 20, 2023
    risk 0.00cvss 9.8epss 0.02

    erohtar/Dasherr is a dashboard for self-hosted services. In affected versions unrestricted file upload allows any unauthenticated user to execute arbitrary code on the server. The file /www/include/filesave.php allows for any file to uploaded to anywhere. If an attacker uploads…

  • CVE-2022-48152CriJan 20, 2023
    risk 0.64cvss 9.8epss 0.01

    SQL Injection vulnerability in RemoteClinic 2.0 allows attackers to execute arbitrary commands and gain sensitive information via the id parameter to /medicines/profile.php.

  • CVE-2022-48120CriJan 20, 2023
    risk 0.64cvss 9.8epss 0.01

    SQL Injection vulnerability in kishan0725 Hospital Management System thru commit 4770d740f2512693ef8fd9aa10a8d17f79fad9bd (on March 13, 2021), allows attackers to execute arbitrary commands via the contact and doctor parameters to /search.php.

  • CVE-2020-29297CriJan 20, 2023
    risk 0.64cvss 9.8epss 0.01

    Multiple SQL Injection vulnerabilities in tourist5 Online-food-ordering-system 1.0.

  • CVE-2020-23256CriJan 20, 2023
    risk 0.64cvss 9.8epss 0.01

    An issue was discovered in Electerm 1.3.22, allows attackers to execute arbitrary code via unverified request to electerms service.

  • CVE-2020-22658CriJan 20, 2023
    risk 0.64cvss 9.8epss 0.01

    In Ruckus R310 10.5.1.0.199, Ruckus R500 10.5.1.0.199, Ruckus R600 10.5.1.0.199, Ruckus T300 10.5.1.0.199, Ruckus T301n 10.5.1.0.199, Ruckus T301s 10.5.1.0.199, SmartCell Gateway 200 (SCG200) before 3.6.2.0.795, SmartZone 100 (SZ-100) before 3.6.2.0.795, SmartZone 300 (SZ300)…

  • CVE-2020-22657CriJan 20, 2023
    risk 0.59cvss 9.1epss 0.01

    In Ruckus R310 10.5.1.0.199, Ruckus R500 10.5.1.0.199, Ruckus R600 10.5.1.0.199, Ruckus T300 10.5.1.0.199, Ruckus T301n 10.5.1.0.199, Ruckus T301s 10.5.1.0.199, SmartCell Gateway 200 (SCG200) before 3.6.2.0.795, SmartZone 100 (SZ-100) before 3.6.2.0.795, SmartZone 300 (SZ300)…

  • CVE-2020-22654CriJan 20, 2023
    risk 0.64cvss 9.8epss 0.00

    In Ruckus R310 10.5.1.0.199, Ruckus R500 10.5.1.0.199, Ruckus R600 10.5.1.0.199, Ruckus T300 10.5.1.0.199, Ruckus T301n 10.5.1.0.199, Ruckus T301s 10.5.1.0.199, SmartCell Gateway 200 (SCG200) before 3.6.2.0.795, SmartZone 100 (SZ-100) before 3.6.2.0.795, SmartZone 300 (SZ300)…

  • CVE-2020-22653CriJan 20, 2023
    risk 0.64cvss 9.8epss 0.01

    In Ruckus R310 10.5.1.0.199, Ruckus R500 10.5.1.0.199, Ruckus R600 10.5.1.0.199, Ruckus T300 10.5.1.0.199, Ruckus T301n 10.5.1.0.199, Ruckus T301s 10.5.1.0.199, SmartCell Gateway 200 (SCG200) before 3.6.2.0.795, SmartZone 100 (SZ-100) before 3.6.2.0.795, SmartZone 300 (SZ300)…

  • CVE-2020-21152CriJan 20, 2023
    risk 0.64cvss 9.8epss 0.01

    SQL Injection vulnerability in inxedu 2.0.6 allows attackers to execute arbitrary commands via the functionIds parameter to /saverolefunction.

  • CVE-2023-23489CriJan 20, 2023
    risk 0.65cvss 9.8epss 0.11

    The Easy Digital Downloads WordPress Plugin, versions 3.1.0.2 & 3.1.0.3, is affected by an unauthenticated SQL injection vulnerability in the 's' parameter of its 'edd_download_search' action.

  • CVE-2023-23488CriJan 20, 2023
    risk 0.67cvss 9.8epss 0.92

    The Paid Memberships Pro WordPress Plugin, version < 2.9.8, is affected by an unauthenticated SQL injection vulnerability in the 'code' parameter of the '/pmpro/v1/order' REST route.

  • CVE-2023-22964CriJan 20, 2023
    risk 0.59cvss 9.1epss 0.02

    Zoho ManageEngine ServiceDesk Plus MSP before 10611, and 13x before 13004, is vulnerable to authentication bypass when LDAP authentication is enabled.

  • CVE-2022-48126CriJan 20, 2023
    risk 0.64cvss 9.8epss 0.02

    TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the username parameter in the setting/setOpenVpnCertGenerationCfg function.

  • CVE-2022-48125CriJan 20, 2023
    risk 0.64cvss 9.8epss 0.02

    TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the password parameter in the setting/setOpenVpnCertGenerationCfg function.

  • CVE-2022-48124CriJan 20, 2023
    risk 0.64cvss 9.8epss 0.02

    TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the FileName parameter in the setting/setOpenVpnCertGenerationCfg function.