CVE Database

CVE-2023-39648CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-89

Improper neutralization of SQL parameter in Theme Volty CMS Testimonial module for PrestaShop. In the module “Theme Volty CMS Testimonial” (tvcmstestimonial) up to version 4.0.1 from Theme Volty for PrestaShop, a guest can perform SQL injection in affected versions.

CVE-2023-39649CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-89

Improper neutralization of SQL parameter in Theme Volty CMS Category Slider module for PrestaShop. In the module “Theme Volty CMS Category Slider” (tvcmscategoryslider) up to version 4.0.1 from Theme Volty for PrestaShop, a guest can perform SQL injection in affected versions.

CVE-2023-39651CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-89

Improper neutralization of SQL parameter in Theme Volty CMS BrandList module for PrestaShop In the module “Theme Volty CMS BrandList” (tvcmsbrandlist) up to version 4.0.1 from Theme Volty for PrestaShop, a guest can perform SQL injection in affected versions.

CVE-2023-39647CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-89

Improper neutralization of SQL parameter in Theme Volty CMS Category Product module for PrestaShop. In the module “Theme Volty CMS Category Product” (tvcmscategoryproduct) up to version 4.0.1 from Theme Volty for PrestaShop, a guest can perform SQL injection in affected versions.

CVE-2023-37404CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE NVD-CWE-noinfo

IBM Observability with Instana 1.0.243 through 1.0.254 could allow an attacker on the network to execute arbitrary code on the host after a successful DNS poisoning attack. IBM X-Force ID: 259789.

CVE-2023-2809CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-312

Plaintext credential usage vulnerability in Sage 200 Spain 2023.38.001 version, the exploitation of which could allow a remote attacker to extract SQL database credentials from the DLL application. This vulnerability could be linked to known techniques to obtain remote execution of MS SQL commands and escalate privileges on Windows systems because the credentials are stored in plaintext.

CVE-2023-4491CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-119

Buffer overflow vulnerability in Easy Address Book Web Server 1.6 version. The exploitation of this vulnerability could allow an attacker to send a very long username string to /searchbook.ghp, asking for the name via a POST request, resulting in arbitrary code execution on the remote machine.

CVE-2023-4494CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-119

Stack-based buffer overflow vulnerability in Easy Chat Server 3.1 version. An attacker could send an excessively long username string to the register.ghp file asking for the name via a GET request resulting in arbitrary code execution on the remote machine.

CVE-2023-5373CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-89

A vulnerability classified as critical has been found in SourceCodester Online Computer and Laptop Store 1.0. Affected is the function register of the file Master.php. The manipulation of the argument email leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-241254 is the identifier assigned to this vulnerability.

CVE-2023-5374CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-89

A vulnerability classified as critical was found in SourceCodester Online Computer and Laptop Store 1.0. Affected by this vulnerability is an unknown functionality of the file products.php. The manipulation of the argument c leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-241255.

CVE-2022-36276CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-89

TCMAN GIM v8.0.1 is vulnerable to a SQL injection via the 'SqlWhere' parameter inside the function 'BuscarESM'. The exploitation of this vulnerability might allow a remote attacker to directly interact with the database.

CVE-2023-20101CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-798

A vulnerability in Cisco Emergency Responder could allow an unauthenticated, remote attacker to log in to an affected device using the root account, which has default, static credentials that cannot be changed or deleted. This vulnerability is due to the presence of static user credentials for the root account that are typically reserved for use during development. An attacker could exploit this vulnerability by using the account to log in to an affected system. A successful exploit could allow the attacker to log in to the affected system and execute arbitrary commands as the root user.

CVE-2023-5399CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-22

A CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists that could cause tampering of files on the personal computer running C-Bus when using the File Command.

CVE-2023-5402CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-269

A CWE-269: Improper Privilege Management vulnerability exists that could cause a remote code execution when the transfer command is used over the network.

CVE-2023-5391CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-502

A CWE-502: Deserialization of untrusted data vulnerability exists that could allow an attacker to execute arbitrary code on the targeted system by sending a specifically crafted packet to the application.

CVE-2023-36619CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-20

Atos Unify OpenScape Session Border Controller through V10 R3.01.03 allows execution of administrative scripts by unauthenticated users.

CVE-2023-41094CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-940

TouchLink packets processed after timeout or out of range due to Operation on a Resource after Expiration and Missing Release of Resource after Effective Lifetime may allow a device to be added outside of valid TouchLink range or pairing duration This issue affects Ember ZNet 7.1.x from 7.1.3 through 7.1.5; 7.2.x from 7.2.0 through 7.2.3; Version 7.3 and later are unaffected

CVE-2023-35803CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-120

IQ Engine before 10.6r2 on Extreme Network AP devices has a Buffer Overflow.

CVE-2023-5423CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-89

A vulnerability has been found in SourceCodester Online Pizza Ordering System 1.0 and classified as critical. This vulnerability affects unknown code of the file /admin/ajax.php?action=confirm_order. The manipulation of the argument id leads to sql injection. The attack can be initiated remotely. The identifier of this vulnerability is VDB-241384.

CVE-2023-32485CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-20

Dell SmartFabric Storage Software version 1.3 and lower contain an improper input validation vulnerability. A remote unauthenticated attacker may exploit this vulnerability and escalate privileges up to the highest administration level. This is a critical severity vulnerability affecting user authentication. Dell recommends customers to upgrade at the earliest opportunity.

CVE-2023-40920CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-89

Prixan prixanconnect up to v1.62 was discovered to contain a SQL injection vulnerability via the component CartsGuruCatalogModuleFrontController::importProducts().

CVE-2023-43981CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-502

Presto Changeo testsitecreator up to 1.1.1 was discovered to contain a deserialization vulnerability via the component delete_excluded_folder.php.

CVE-2023-43983CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-89

Presto Changeo attributegrid up to 2.0.3 was discovered to contain a SQL injection vulnerability via the component disable_json.php.

CVE-2023-44024CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-89

SQL injection vulnerability in KnowBand Module One Page Checkout, Social Login & Mailchimp (supercheckout) v.8.0.3 and before allows a remote attacker to execute arbitrary code via a crafted request to the updateCheckoutBehaviour function in the supercheckout.php component.

CVE-2023-43269CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-434

pigcms up to 7.0 was discovered to contain an arbitrary file upload vulnerability.

CVE-2023-26153CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-78

Versions of the package geokit-rails before 2.5.0 are vulnerable to Command Injection due to unsafe deserialisation of YAML within the 'geo_location' cookie. This issue can be exploited remotely via a malicious cookie value. **Note:** An attacker can use this vulnerability to execute commands on the host system.

CVE-2015-10126CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-89

A vulnerability classified as critical was found in Easy2Map Photos Plugin 1.0.1 on WordPress. This vulnerability affects unknown code. The manipulation leads to sql injection. The attack can be initiated remotely. Upgrading to version 1.1.0 is able to address this issue. The patch is identified as 503d9ee2482d27c065f78d9546f076a406189908. It is recommended to upgrade the affected component. VDB-241318 is the identifier assigned to this vulnerability.

CVE-2023-4530CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Turna Advertising Administration Panel allows SQL Injection. This issue affects Advertising Administration Panel: before 1.1.

CVE-2023-38703CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-416

PJSIP is a free and open source multimedia communication library written in C with high level API in C, C++, Java, C#, and Python languages. SRTP is a higher level media transport which is stacked upon a lower level media transport such as UDP and ICE. Currently a higher level transport is not synchronized with its lower level transport that may introduce use-after-free issue. This vulnerability affects applications that have SRTP capability (`PJMEDIA_HAS_SRTP` is set) and use underlying media transport other than UDP. This vulnerability’s impact may range from unexpected application termination to control flow hijack/memory corruption. The patch is available as a commit in the master branch.

CVE-2023-43058CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE NVD-CWE-noinfo

IBM Robotic Process Automation 23.0.9 is vulnerable to privilege escalation that affects ownership of projects. IBM X-Force ID: 247527.

CVE-2023-44807CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-787

D-Link DIR-820L 1.05B03 has a stack overflow vulnerability in the cancelPing function.

CVE-2023-45239CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE NVD-CWE-noinfo

A lack of input validation exists in tac_plus prior to commit 4fdf178 which, when pre or post auth commands are enabled, allows an attacker who can control the username, rem-addr, or NAC address sent to tac_plus to inject shell commands and gain remote code execution on the tac_plus server.

CVE-2023-5214CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-269

In Puppet Bolt versions prior to 3.27.4, a path to escalate privileges was identified.

CVE-2023-3725CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-120

Potential buffer overflow vulnerability in the Zephyr CAN bus subsystem

CVE-2023-45199CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-120

Mbed TLS 3.2.x through 3.4.x before 3.5 has a Buffer Overflow that can lead to remote Code execution.

CVE-2023-45612CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-611

In JetBrains Ktor before 2.3.5 default configuration of ContentNegotiation with XML format was vulnerable to XXE

CVE-2023-43696CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-284

Improper Access Control in SICK APU allows an unprivileged remote attacker to download as well as upload arbitrary files via anonymous access to the FTP server.

CVE-2023-5365CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE NVD-CWE-noinfo

HP LIFE Android Mobile application is potentially vulnerable to escalation of privilege and/or information disclosure.

CVE-2023-43899CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-89

hansun CMS v1.0 was discovered to contain a SQL injection vulnerability via the component /ajax/ajax_login.ashx.

CVE-2023-42491CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-285

EisBaer Scada - CWE-285: Improper Authorization

CVE-2023-42492CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-321

EisBaer Scada - CWE-321: Use of Hard-coded Cryptographic Key

CVE-2023-43625CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-94

A vulnerability has been identified in Simcenter Amesim (All versions < V2021.1). The affected application contains a SOAP endpoint that could allow an unauthenticated remote attacker to perform DLL injection and execute arbitrary code in the context of the affected application process.

CVE-2023-34992CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-78

A improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet allows attacker to execute unauthorized code or commands via crafted API requests.

CVE-2023-32244KEVCRITICALin_the_wild
CVSS 9.8
EPSS
Priority 0

Improper Privilege Management vulnerability in xtemos Woodmart Core allows Privilege Escalation.This issue affects Woodmart Core: from n/a through 1.0.36.

CVE-2023-30803CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-290

The Sangfor Next-Gen Application Firewall version NGAF8.0.17 is vulnerable to an authentication bypass vulnerability. A remote and unauthenticated attacker can bypass authentication and access administrative functionality by sending HTTP requests using a crafted Y-forwarded-for header.

CVE-2023-30805CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-78

The Sangfor Next-Gen Application Firewall version NGAF8.0.17 is vulnerable to an operating system command injection vulnerability. A remote and unauthenticated attacker can execute arbitrary commands by sending a crafted HTTP POST request to the /LogInOut.php endpoint. This is due to mishandling of shell meta-characters in the "un" parameter.

CVE-2023-30806CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-78

The Sangfor Next-Gen Application Firewall version NGAF8.0.17 is vulnerable to an operating system command injection vulnerability. A remote and unauthenticated attacker can execute arbitrary commands by sending a crafted HTTP POST request to the /cgi-bin/login.cgi endpoint. This is due to mishandling of shell meta-characters in the PHPSESSID cookie.

CVE-2020-27630CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-330

In Silicon Labs uC/TCP-IP 3.6.0, TCP ISNs are improperly random.

CVE-2020-27631CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-330

In Oryx CycloneTCP 1.9.6, TCP ISNs are improperly random.

CVE-2023-36547CRITICALnone
CVSS 9.8
EPSS
Priority 0
CWE CWE-78

A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiWLM version 8.6.0 through 8.6.5 and 8.5.0 through 8.5.4 allows attacker to execute unauthorized code or commands via specifically crafted http get request parameters.

← PreviousPage 526 / 7034Next →