VulnSea

Tagged “in-the-wild”

CVEs tagged in-the-wild, newest first.

357 CVEsRSS

CVE-2023-41265Critical· 9.6CISA KEVPoC
3y ago

An HTTP Request Tunneling vulnerability found in Qlik Sense Enterprise for Windows for versions May 2023 Patch 3 and earlier, February 2023 Patch 7 and earlier, November 2022 Patch 10 and earlier, and August 2022 Patch 12 and earlier all…

An HTTP Request Tunneling vulnerability found in Qlik Sense Enterprise for Windows for versions May 2023 Patch 3 and earlier, February 2023 Patch 7 and earlier, November 2022 Patch 10 and earlier, and August 2022 Patch 12 and earlier all…

▾ Hadalqlik · qlik_senseEPSS 88%via NVD
CVE-2023-4346High· 7.5CISA KEV
3y ago

KNX devices that use KNX Connection Authorization and support Option 1 are, depending on the implementation, vulnerable to being locked and users being unable to reset them to gain access to the device

KNX devices that use KNX Connection Authorization and support Option 1 are, depending on the implementation, vulnerable to being locked and users being unable to reset them to gain access to the device. The BCU key feature on the device…

▾ Abyssalknx · connection_authorizationEPSS 1.3%via NVD
CVE-2023-38831High· 7.8CISA KEV0dayPoC
3y ago

RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a ZIP archive

RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a ZIP archive. The issue occurs because a ZIP archive may include a benign file (such as an ordinary .JPG file) and al…

▾ Abyssalrarlab · winrarEPSS 100%via NVD
CVE-2023-38950High· 7.5CISA KEVPoC
3y ago

A path traversal vulnerability in the iclock API of ZKTeco BioTime v8.5.5 allows unauthenticated attackers to read arbitrary files via supplying a crafted payload

A path traversal vulnerability in the iclock API of ZKTeco BioTime v8.5.5 allows unauthenticated attackers to read arbitrary files via supplying a crafted payload. This vulnerability was fixed in version 9.0.120240617.19506 of ZKBioTime.

▾ Abyssalzkteco · biotimeEPSS 92%via NVD
CVE-2023-35078Critical· 9.8CISA KEV0dayPoC
3y ago

An authentication bypass vulnerability in Ivanti EPMM allows unauthorized users to access restricted functionality or resources of the application without proper authentication.

An authentication bypass vulnerability in Ivanti EPMM allows unauthorized users to access restricted functionality or resources of the application without proper authentication.

▾ Hadalivanti · endpoint_manager_mobileEPSS 100%via NVD
CVE-2023-3519Critical· 9.8CISA KEV0dayPoC
3y ago

Unauthenticated remote code execution

Unauthenticated remote code execution

▾ Hadalcitrix · netscaler_application_delivery_controllerEPSS 100%via NVD
CVE-2023-27997Critical· 9.8CISA KEV0dayPoC
3y ago

A heap-based buffer overflow vulnerability [CWE-122] in FortiOS version 7.2.4 and below, version 7.0.11 and below, version 6.4.12 and below, version 6.0.16 and below and FortiProxy version 7.2.3 and below, version 7.0.9 and below, versio…

A heap-based buffer overflow vulnerability [CWE-122] in FortiOS version 7.2.4 and below, version 7.0.11 and below, version 6.4.12 and below, version 6.0.16 and below and FortiProxy version 7.2.3 and below, version 7.0.9 and below, versio…

▾ Hadalfortinet · fortiproxyEPSS 86%via NVD
CVE-2023-27524High· 8.9CISA KEVPoC
3y ago

Apache superset missing check for default SECRET_KEY

Apache superset missing check for default SECRET_KEY

▾ Abyssalapache-superset · apache-supersetEPSS 97%via OSV
CVE-2023-28461Critical· 9.8CISA KEV
3y ago

Array Networks Array AG Series and vxAG (9.4.0.481 and earlier) allow remote code execution

Array Networks Array AG Series and vxAG (9.4.0.481 and earlier) allow remote code execution. An attacker can browse the filesystem on the SSL VPN gateway using a flags attribute in an HTTP header without authentication. The product could…

▾ Hadalarraynetworks · arrayos_agEPSS 68%via NVD
CVE-2023-23376High· 7.8CISA KEV0day
3y ago

Windows Common Log File System Driver Elevation of Privilege Vulnerability

Windows Common Log File System Driver Elevation of Privilege Vulnerability

▾ Abyssalmicrosoft · windows_10_1507EPSS 11%via NVD
CVE-2023-0669High· 7.2CISA KEVPoC
3y ago

Fortra (formerly, HelpSystems) GoAnywhere MFT suffers from a pre-authentication command injection vulnerability in the License Response Servlet due to deserializing an arbitrary attacker-controlled object

Fortra (formerly, HelpSystems) GoAnywhere MFT suffers from a pre-authentication command injection vulnerability in the License Response Servlet due to deserializing an arbitrary attacker-controlled object. This issue was patched in versi…

▾ Abyssalfortra · goanywhere_managed_file_transferEPSS 100%via NVD
CVE-2022-47966Critical· 9.8CISA KEVPoC
3y ago

Multiple Zoho ManageEngine on-premise products, such as ServiceDesk Plus through 14003, allow remote code execution due to use of Apache Santuario xmlsec (aka XML Security for Java) 1.4.1, because the xmlsec XSLT features, by design in t…

Multiple Zoho ManageEngine on-premise products, such as ServiceDesk Plus through 14003, allow remote code execution due to use of Apache Santuario xmlsec (aka XML Security for Java) 1.4.1, because the xmlsec XSLT features, by design in t…

▾ Hadalzohocorp · manageengine_access_manager_plusEPSS 100%via NVD
CVE-2022-26486Critical· 9.6CISA KEV0day
3y ago

An unexpected message in the WebGPU IPC framework could lead to a use-after-free and exploitable sandbox escape

An unexpected message in the WebGPU IPC framework could lead to a use-after-free and exploitable sandbox escape. We have had reports of attacks in the wild abusing this flaw. This vulnerability affects Firefox < 97.0.2, Firefox ESR < 91.…

▾ Hadalmozilla · firefoxEPSS 2.3%via NVD
CVE-2022-26485High· 8.8CISA KEV0dayPoC
3y ago

Removing an XSLT parameter during processing could have lead to an exploitable use-after-free

Removing an XSLT parameter during processing could have lead to an exploitable use-after-free. We have had reports of attacks in the wild abusing this flaw. This vulnerability affects Firefox < 97.0.2, Firefox ESR < 91.6.1, Firefox for A…

▾ Abyssalmozilla · firefoxEPSS 14%via NVD
CVE-2022-40684Critical· 9.8CISA KEV0dayPoC
3y ago

An authentication bypass using an alternate path or channel [CWE-288] in Fortinet FortiOS version 7.2.0 through 7.2.1 and 7.0.0 through 7.0.6, FortiProxy version 7.2.0 and version 7.0.0 through 7.0.6 and FortiSwitchManager version 7.2.0 …

An authentication bypass using an alternate path or channel [CWE-288] in Fortinet FortiOS version 7.2.0 through 7.2.1 and 7.0.0 through 7.0.6, FortiProxy version 7.2.0 and version 7.0.0 through 7.0.6 and FortiSwitchManager version 7.2.0 …

▾ Hadalfortinet · fortiproxyEPSS 100%via NVD
CVE-2022-41352Critical· 9.8CISA KEVPoC
4y ago

An issue was discovered in Zimbra Collaboration (ZCS) 8.8.15 and 9.0

An issue was discovered in Zimbra Collaboration (ZCS) 8.8.15 and 9.0. An attacker can upload arbitrary files through amavis via a cpio loophole (extraction to /opt/zimbra/jetty/webapps/zimbra/public) that can lead to incorrect access to …

▾ Hadalsynacor · zimbra_collaboration_suiteEPSS 95%via NVD
CVE-2022-37969High· 7.8CISA KEV0dayPoC
4y ago

Windows Common Log File System Driver Elevation of Privilege Vulnerability

Windows Common Log File System Driver Elevation of Privilege Vulnerability

▾ Abyssalmicrosoft · windows_10_1507EPSS 28%via NVD
CVE-2022-37042Critical· 9.8CISA KEV0dayPoC
4y ago

Zimbra Collaboration Suite (ZCS) 8.8.15 and 9.0 has mboximport functionality that receives a ZIP archive and extracts files from it

Zimbra Collaboration Suite (ZCS) 8.8.15 and 9.0 has mboximport functionality that receives a ZIP archive and extracts files from it. By bypassing authentication (i.e., not having an authtoken), an attacker can upload arbitrary files to t…

▾ Hadalsynacor · zimbra_collaboration_suiteEPSS 92%via NVD
CVE-2022-2294High· 8.8CISA KEV0day
4y ago

Heap buffer overflow in WebRTC in Google Chrome prior to 103.0.5060.114 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Heap buffer overflow in WebRTC in Google Chrome prior to 103.0.5060.114 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

▾ Abyssalgoogle · chromeEPSS 70%via NVD
CVE-2022-30023High· 8.8⚠ ExploitedPoC
4y ago

Tenda ONT GPON AC1200 Dual band WiFi HG9 v1.0.1 is vulnerable to Command Injection via the Ping function.

Tenda ONT GPON AC1200 Dual band WiFi HG9 v1.0.1 is vulnerable to Command Injection via the Ping function.

▾ Midnighttenda · hg9_firmwareEPSS 39%via NVD
CVE-2022-30190High· 7.8CISA KEV0dayPoC
4y ago

A remote code execution vulnerability exists when MSDT is called using the URL protocol from a calling application such as Word

A remote code execution vulnerability exists when MSDT is called using the URL protocol from a calling application such as Word. An attacker who successfully exploits this vulnerability can run arbitrary code with the privileges of the c…

▾ Abyssalmicrosoft · windows_10_1507EPSS 99%via NVD
CVE-2018-10657High· 7.5⚠ Exploited0day
4y ago

Matrix Synapse DoS

Matrix Synapse DoS

▾ Abyssalmatrix-synapse · matrix-synapseEPSS 1.5%via OSV
CVE-2022-30333High· 7.5CISA KEVPoC
4y ago

RARLAB UnRAR before 6.12 on Linux and UNIX allows directory traversal to write to files during an extract (aka unpack) operation, as demonstrated by creating a ~/.ssh/authorized_keys file

RARLAB UnRAR before 6.12 on Linux and UNIX allows directory traversal to write to files during an extract (aka unpack) operation, as demonstrated by creating a ~/.ssh/authorized_keys file. NOTE: WinRAR and Android RAR are unaffected.

▾ Abyssalrarlab · unrarEPSS 99%via NVD
CVE-2022-29499Critical· 9.8CISA KEV
4y ago

The Service Appliance component in Mitel MiVoice Connect through 19.2 SP3 allows remote code execution because of incorrect data validation

The Service Appliance component in Mitel MiVoice Connect through 19.2 SP3 allows remote code execution because of incorrect data validation. The Service Appliances are SA 100, SA 400, and Virtual SA.

▾ Hadalmitel · mivoice_connectEPSS 54%via NVD
CVE-2022-27925High· 7.2CISA KEVPoC
4y ago

Zimbra Collaboration (aka ZCS) 8.8.15 and 9.0 has mboximport functionality that receives a ZIP archive and extracts files from it

Zimbra Collaboration (aka ZCS) 8.8.15 and 9.0 has mboximport functionality that receives a ZIP archive and extracts files from it. An authenticated user with administrator rights has the ability to upload arbitrary files to the system, l…

▾ Abyssalsynacor · zimbra_collaboration_suiteEPSS 99%via NVD
CVE-2022-27924High· 7.5CISA KEVPoC
4y ago

Zimbra Collaboration (aka ZCS) 8.8.15 and 9.0 allows an unauthenticated attacker to inject arbitrary memcache commands into a targeted instance

Zimbra Collaboration (aka ZCS) 8.8.15 and 9.0 allows an unauthenticated attacker to inject arbitrary memcache commands into a targeted instance. These memcache commands becomes unescaped, causing an overwrite of arbitrary cached entries.

▾ Abyssalsynacor · zimbra_collaboration_suiteEPSS 85%via NVD
CVE-2022-26258Critical· 9.8CISA KEV
4y ago

D-Link DIR-820L 1.05B03 was discovered to contain remote command execution (RCE) vulnerability via HTTP POST to get set ccp.

D-Link DIR-820L 1.05B03 was discovered to contain remote command execution (RCE) vulnerability via HTTP POST to get set ccp.

▾ Hadaldlink · dir-820l_firmwareEPSS 92%via NVD
CVE-2022-0995High· 7.8CISA KEVPoC
4y ago

An out-of-bounds (OOB) memory write flaw was found in the Linux kernel’s watch_queue event notification subsystem

An out-of-bounds (OOB) memory write flaw was found in the Linux kernel’s watch_queue event notification subsystem. This flaw can overwrite parts of the kernel state, potentially allowing a local user to gain privileged access or cause a …

▾ Abyssallinux · linux_kernelEPSS 8.8%via NVD
CVE-2022-25060Critical· 9.8⚠ ExploitedPoC
4y ago

TP-LINK TL-WR840N(ES)_V6.20_180709 was discovered to contain a command injection vulnerability via the component oal_startPing.

TP-LINK TL-WR840N(ES)_V6.20_180709 was discovered to contain a command injection vulnerability via the component oal_startPing.

▾ Abyssaltp-link · tl-wr840n_firmwareEPSS 40%via NVD
CVE-2022-24682Medium· 6.1CISA KEV0dayPoC
4y ago

An issue was discovered in the Calendar feature in Zimbra Collaboration Suite 8.8.x before 8.8.15 patch 30 (update 1), as exploited in the wild starting in December 2021

An issue was discovered in the Calendar feature in Zimbra Collaboration Suite 8.8.x before 8.8.15 patch 30 (update 1), as exploited in the wild starting in December 2021. An attacker could place HTML containing executable JavaScript insi…

▾ Midnightsynacor · zimbra_collaboration_suiteEPSS 31%via NVD
CVEs tagged “in-the-wild” — page 7 · VulnSea