Vulnerabilidades CVE
Base de datos de vulnerabilidades CVE enriquecida con datos de CISA KEV y NVD
| CVE ID | CVSS | Severidad | KEV | Avistamientos |
|---|---|---|---|---|
| CVE-2024-31777 File Upload vulnerability in openeclass v.3.15 and before allows an attacker to execute arbitrary code via a crafted file to the certbadge.php endpoint. | 9.8 | CRITICAL | β | 0 |
| CVE-2025-49001 DataEase is an open source business intelligence and data visualization tool. Prior to version 2.10.10, secret verification does not take effect successfully, so a user can use any secret to forge a J... | 9.8 | CRITICAL | β | 0 |
| CVE-2025-49002 DataEase is an open source business intelligence and data visualization tool. Versions prior to version 2.10.10 have a flaw in the patch for CVE-2025-32966 that allow the patch to be bypassed through ... | 9.8 | CRITICAL | β | 0 |
| CVE-2025-49223 billboard.js before 3.15.1 was discovered to contain a prototype pollution via the function generate, which could allow attackers to execute arbitrary code or cause a Denial of Service (DoS) via injec... | 9.8 | CRITICAL | β | 0 |
| CVE-2024-42569 School Management System commit bae5aa was discovered to contain a SQL injection vulnerability via the medium parameter at paidclass.php. | 9.8 | CRITICAL | β | 0 |
| CVE-2024-36782 TOTOLINK CP300 V2.0.4-B20201102 was discovered to contain a hardcoded password vulnerability in /etc/shadow.sample, which allows attackers to log in as root. | 9.8 | CRITICAL | β | 0 |
| CVE-2024-36042 Silverpeas before 6.3.5 allows authentication bypass by omitting the Password field to AuthenticationServlet, often providing an unauthenticated user with superadmin access. | 9.8 | CRITICAL | β | 0 |
| CVE-2024-33999 The referrer URL used by MFA required additional sanitizing, rather than being used directly. | 9.8 | CRITICAL | β | 0 |
| CVE-2025-4578 The File Provider WordPress plugin through 1.2.3 does not properly sanitise and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to ... | 9.8 | CRITICAL | β | 0 |
| CVE-2023-43845 Aten PE6208 2.3.228 and 2.4.232 have default credentials for the privileged telnet account. The user is not asked to change the credentials after first login. If not changed, attackers can log in to t... | 9.8 | CRITICAL | β | 0 |
| CVE-2024-34854 F-logic DataCube3 v1.0 is vulnerable to File Upload via `/admin/transceiver_schedule.php.` | 9.8 | CRITICAL | β | 0 |
| CVE-2024-35324 Douchat 4.0.5 suffers from an arbitrary file upload vulnerability via Public/Plugins/webuploader/server/preview.php. | 9.8 | CRITICAL | β | 0 |
| CVE-2024-35373 Mocodo Mocodo Online 4.2.6 and below is vulnerable to Remote Code Execution via /web/rewrite.php. | 9.8 | CRITICAL | β | 0 |
| CVE-2024-35374 Mocodo Mocodo Online 4.2.6 and below does not properly sanitize the sql_case input field in /web/generate.php, allowing remote attackers to execute arbitrary commands and potentially command injection... | 9.8 | CRITICAL | β | 0 |
| CVE-2024-35570 An arbitrary file upload vulnerability in the component \controller\ImageUploadController.class of inxedu v2.0.6 allows attackers to execute arbitrary code via uploading a crafted jsp file. | 9.8 | CRITICAL | β | 0 |
| CVE-2024-35080 An arbitrary file upload vulnerability in the gok4 method of inxedu v2024.4 allows attackers to execute arbitrary code via uploading a crafted .jsp file. | 9.8 | CRITICAL | β | 0 |
| CVE-2024-35079 An arbitrary file upload vulnerability in the uploadAudio method of inxedu v2024.4 allows attackers to execute arbitrary code via uploading a crafted .jsp file. | 9.8 | CRITICAL | β | 0 |
| CVE-2024-35409 WeBid 1.1.2 is vulnerable to SQL Injection via admin/tax.php. | 9.8 | CRITICAL | β | 0 |
| CVE-2024-35056 NASA AIT-Core v2.5.2 was discovered to contain multiple SQL injection vulnerabilities via the query_packets and insert functions. | 9.8 | CRITICAL | β | 0 |
| CVE-2024-34982 An arbitrary file upload vulnerability in the component /include/file.php of lylme_spage v1.9.5 allows attackers to execute arbitrary code via uploading a crafted file. | 9.8 | CRITICAL | β | 0 |
| CVE-2025-5600 A vulnerability, which was classified as critical, has been found in TOTOLINK EX1200T 4.1.2cu.5232_B20210713. This issue affects the function setLanguageCfg of the file /cgi-bin/cstecgi.cgi. The manip... | 9.8 | CRITICAL | β | 0 |
| CVE-2024-34257 TOTOLINK EX1800T V9.1.0cu.2112_B20220316 has a vulnerability in the apcliEncrypType parameter that allows unauthorized execution of arbitrary commands, allowing an attacker to obtain device administra... | 9.8 | CRITICAL | β | 0 |
| CVE-2024-32370 An issue in HSC Cybersecurity HC Mailinspector 5.2.17-3 through 5.2.18 allows a remote attacker to obtain sensitive information via a crafted payload to the id parameter in the mliSystemUsers.php comp... | 9.8 | CRITICAL | β | 0 |
| CVE-2025-44890 FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the host_ip parameter in the web_snmp_notifyv3_add_post function. | 9.8 | CRITICAL | β | 0 |
| CVE-2024-33792 netis-systems MEX605 v2.00.06 allows attackers to execute arbitrary OS commands via a crafted payload to the tracert page. | 9.8 | CRITICAL | β | 0 |
| CVE-2024-33789 Linksys E5600 v1.1.0.26 was discovered to contain a command injection vulnerability via the ipurl parameter at /API/info form endpoint. | 9.8 | CRITICAL | β | 0 |
| CVE-2025-5622 A vulnerability was found in D-Link DIR-816 1.10CNB05 and classified as critical. Affected by this issue is the function wirelessApcli_5g of the file /goform/wirelessApcli_5g. The manipulation of the ... | 9.8 | CRITICAL | β | 0 |
| CVE-2025-5623 A vulnerability was found in D-Link DIR-816 1.10CNB05. It has been classified as critical. This affects the function qosClassifier of the file /goform/qosClassifier. The manipulation of the argument d... | 9.8 | CRITICAL | β | 0 |
| CVE-2025-5624 A vulnerability was found in D-Link DIR-816 1.10CNB05. It has been declared as critical. This vulnerability affects the function QoSPortSetup of the file /goform/QoSPortSetup. The manipulation of the ... | 9.8 | CRITICAL | β | 0 |
| CVE-2024-31673 Kliqqi-CMS 2.0.2 is vulnerable to SQL Injection in load_data.php via the userid parameter. | 9.8 | CRITICAL | β | 0 |
| CVE-2025-5630 A vulnerability has been found in D-Link DIR-816 1.10CNB05 and classified as critical. This vulnerability affects unknown code of the file /goform/form2lansetup.cgi. The manipulation of the argument i... | 9.8 | CRITICAL | β | 0 |
| CVE-2024-34048 O-RAN RIC I-Release e2mgr lacks array size checks in E2nodeConfigUpdateNotificationHandler. | 9.8 | CRITICAL | β | 0 |
| CVE-2024-20067 In modem, there is a possible out of bounds write due to improper input invalidation. This could lead to remote denial of service with no additional execution privileges needed. User interaction is no... | 9.8 | CRITICAL | β | 0 |
| CVE-2024-31750 SQL injection vulnerability in f-logic datacube3 v.1.0 allows a remote attacker to obtain sensitive information via the req_id parameter. | 9.8 | CRITICAL | β | 0 |
| CVE-2023-49262 The authentication mechanism can be bypassed by overflowing the value of the Cookie "authentication" field, provided there is an active user session. | 9.8 | CRITICAL | β | 0 |
| CVE-2023-49255 The router console is accessible without authentication at "data" field, and while a user needs to be logged in in order to modify the configuration, the session state is shared. If any other user is ... | 9.8 | CRITICAL | β | 0 |
| CVE-2023-49253 Root user password is hardcoded into the device and cannot be changed in the user interface. | 9.8 | CRITICAL | β | 0 |
| CVE-2023-52026 TOTOlink EX1800T V9.1.0cu.2112_B20220316 was discovered to contain a remote command execution (RCE) vulnerability via the telnet_enabled parameter of the setTelnetCfg interface | 9.8 | CRITICAL | β | 0 |
| CVE-2024-4620 The ARForms - Premium WordPress Form Builder Plugin WordPress plugin before 6.6 allows unauthenticated users to modify uploaded files in such a way that PHP code can be uploaded when an upload file in... | 9.8 | CRITICAL | β | 0 |
| CVE-2023-30016 SQL Injection vulnerability in oretnom23 Judging Management System v1.0, allows remote attackers to execute arbitrary code and obtain sensitive information via sub_event_id parameter in sub_event_deta... | 9.8 | CRITICAL | β | 0 |
| CVE-2023-30015 SQL Injection vulnerability in oretnom23 Judging Management System v1.0, allows remote attackers to execute arbitrary code and obtain sensitive information via txtsearch parameter in review_search.php... | 9.8 | CRITICAL | β | 0 |
| CVE-2023-30014 SQL Injection vulnerability in oretnom23 Judging Management System v1.0, allows remote attackers to execute arbitrary code and obtain sensitive information via sub_event_id parameter in sub_event_stat... | 9.8 | CRITICAL | β | 0 |
| CVE-2024-36761 naga v0.14.0 was discovered to contain a stack overflow via the component /wgsl/parse/mod.rs. | 9.8 | CRITICAL | β | 0 |
| CVE-2023-50919 An issue was discovered on GL.iNet devices before version 4.5.0. There is an NGINX authentication bypass via Lua string pattern matching. This affects A1300 4.4.6, AX1800 4.4.6, AXT1800 4.4.6, MT3000 ... | 9.8 | CRITICAL | β | 0 |
| CVE-2016-20021 In Gentoo Portage before 3.0.47, there is missing PGP validation of executed code: the standalone emerge-webrsync downloads a .gpgsig file but does not perform signature verification. Unless emerge-we... | 9.8 | CRITICAL | β | 0 |
| CVE-2023-51350 A spoofing attack in ujcms v.8.0.2 allows a remote attacker to obtain sensitive information and execute arbitrary code via a crafted script to the X-Forwarded-For function in the header. | 9.8 | CRITICAL | β | 0 |
| CVE-2024-23060 TOTOLINK A3300R V17.0.0cu.557_B20221024 was discovered to contain a command injection vulnerability via the ip parameter in the setDmzCfg function. | 9.8 | CRITICAL | β | 0 |
| CVE-2024-23059 TOTOLINK A3300R V17.0.0cu.557_B20221024 was discovered to contain a command injection vulnerability via the username parameter in the setDdnsCfg function. | 9.8 | CRITICAL | β | 0 |
| CVE-2024-22942 TOTOLINK A3300R V17.0.0cu.557_B20221024 was discovered to contain a command injection vulnerability via the hostName parameter in the setWanCfg function. | 9.8 | CRITICAL | β | 0 |
| CVE-2023-51987 D-Link DIR-822+ V1.0.2 contains a login bypass in the HNAP1 interface, which allows attackers to log in to administrator accounts with empty passwords. | 9.8 | CRITICAL | β | 0 |
This product uses data from the NVD API but is not endorsed or certified by the NVD.