#ExploitObserverAlert
CVE-2022-41724
DESCRIPTION: Exploit Observer has 16 entries in 4 file formats related to CVE-2022-41724. Large handshake records may cause panics in crypto/tls. Both clients and servers may send large TLS handshake records which cause servers and clients, respectively, to panic when attempting to construct responses. This affects all TLS 1.3 clients, TLS 1.2 clients which explicitly enable session resumption (by setting Config.ClientSessionCache to a non-nil value), and TLS 1.3 servers which request client certificates (by setting Config.ClientAuth >= RequestClientCert).
FIRST-EPSS: 0.001070000
NVD-IS: 3.6
NVD-ES: 3.9
ARPS-PRIORITY: 0.7237197
CVE-2022-41724
DESCRIPTION: Exploit Observer has 16 entries in 4 file formats related to CVE-2022-41724. Large handshake records may cause panics in crypto/tls. Both clients and servers may send large TLS handshake records which cause servers and clients, respectively, to panic when attempting to construct responses. This affects all TLS 1.3 clients, TLS 1.2 clients which explicitly enable session resumption (by setting Config.ClientSessionCache to a non-nil value), and TLS 1.3 servers which request client certificates (by setting Config.ClientAuth >= RequestClientCert).
FIRST-EPSS: 0.001070000
NVD-IS: 3.6
NVD-ES: 3.9
ARPS-PRIORITY: 0.7237197
#ExploitObserverAlert
CVE-2019-15598
DESCRIPTION: Exploit Observer has 9 entries in 2 file formats related to CVE-2019-15598. A Code Injection exists in treekill on Windows which allows a remote code execution when an attacker is able to control the input into the command.
FIRST-EPSS: 0.004020000
NVD-IS: 5.9
NVD-ES: 3.9
ARPS-PRIORITY: 0.7180874
CVE-2019-15598
DESCRIPTION: Exploit Observer has 9 entries in 2 file formats related to CVE-2019-15598. A Code Injection exists in treekill on Windows which allows a remote code execution when an attacker is able to control the input into the command.
FIRST-EPSS: 0.004020000
NVD-IS: 5.9
NVD-ES: 3.9
ARPS-PRIORITY: 0.7180874
#ExploitObserverAlert
CVE-2021-29002
DESCRIPTION: Exploit Observer has 8 entries in 3 file formats related to CVE-2021-29002. A stored cross-site scripting (XSS) vulnerability in Plone CMS 5.2.3 exists in site-controlpanel via the "form.widgets.site_title" parameter.
FIRST-EPSS: 0.000780000
NVD-IS: 2.7
NVD-ES: 2.3
ARPS-PRIORITY: 0.8197031
CVE-2021-29002
DESCRIPTION: Exploit Observer has 8 entries in 3 file formats related to CVE-2021-29002. A stored cross-site scripting (XSS) vulnerability in Plone CMS 5.2.3 exists in site-controlpanel via the "form.widgets.site_title" parameter.
FIRST-EPSS: 0.000780000
NVD-IS: 2.7
NVD-ES: 2.3
ARPS-PRIORITY: 0.8197031
#ExploitObserverAlert
CVE-2020-7658
DESCRIPTION: Exploit Observer has 8 entries in 2 file formats related to CVE-2020-7658. meinheld prior to 1.0.2 is vulnerable to HTTP Request Smuggling. HTTP pipelining issues and request smuggling attacks might be possible due to incorrect Content-Length and Transfer encoding header parsing.
FIRST-EPSS: 0.001160000
NVD-IS: 2.7
NVD-ES: 2.8
ARPS-PRIORITY: 0.7195404
CVE-2020-7658
DESCRIPTION: Exploit Observer has 8 entries in 2 file formats related to CVE-2020-7658. meinheld prior to 1.0.2 is vulnerable to HTTP Request Smuggling. HTTP pipelining issues and request smuggling attacks might be possible due to incorrect Content-Length and Transfer encoding header parsing.
FIRST-EPSS: 0.001160000
NVD-IS: 2.7
NVD-ES: 2.8
ARPS-PRIORITY: 0.7195404
#ExploitObserverAlert
CVE-2022-25759
DESCRIPTION: Exploit Observer has 7 entries in 2 file formats related to CVE-2022-25759. The package convert-svg-core before 0.6.2 are vulnerable to Remote Code Injection via sending an SVG file containing the payload.
FIRST-EPSS: 0.071250000
NVD-IS: 5.9
NVD-ES: 3.9
ARPS-PRIORITY: 0.7197403
CVE-2022-25759
DESCRIPTION: Exploit Observer has 7 entries in 2 file formats related to CVE-2022-25759. The package convert-svg-core before 0.6.2 are vulnerable to Remote Code Injection via sending an SVG file containing the payload.
FIRST-EPSS: 0.071250000
NVD-IS: 5.9
NVD-ES: 3.9
ARPS-PRIORITY: 0.7197403
#ExploitObserverAlert
CVE-2017-7466
DESCRIPTION: Exploit Observer has 17 entries in 3 file formats related to CVE-2017-7466. Ansible before version 2.3 has an input validation vulnerability in the handling of data sent from client systems. An attacker with control over a client system being managed by Ansible, and the ability to send facts back to the Ansible server, could use this flaw to execute arbitrary code on the Ansible server using the Ansible server privileges.
FIRST-EPSS: 0.004190000
NVD-IS: 5.9
NVD-ES: 2.1
ARPS-PRIORITY: 0.8256592
CVE-2017-7466
DESCRIPTION: Exploit Observer has 17 entries in 3 file formats related to CVE-2017-7466. Ansible before version 2.3 has an input validation vulnerability in the handling of data sent from client systems. An attacker with control over a client system being managed by Ansible, and the ability to send facts back to the Ansible server, could use this flaw to execute arbitrary code on the Ansible server using the Ansible server privileges.
FIRST-EPSS: 0.004190000
NVD-IS: 5.9
NVD-ES: 2.1
ARPS-PRIORITY: 0.8256592
#ExploitObserverAlert
CVE-2021-46920
DESCRIPTION: Exploit Observer has 10 entries in 2 file formats related to CVE-2021-46920. In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: Fix clobbering of SWERR overflow bit on writeback Current code blindly writes over the SWERR and the OVERFLOW bits. Write back the bits actually read instead so the driver avoids clobbering the OVERFLOW bit that comes after the register is read.
FIRST-EPSS: 0.000450000
NVD-IS: 3.6
NVD-ES: 1.8
ARPS-PRIORITY: 0.7131285
CVE-2021-46920
DESCRIPTION: Exploit Observer has 10 entries in 2 file formats related to CVE-2021-46920. In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: Fix clobbering of SWERR overflow bit on writeback Current code blindly writes over the SWERR and the OVERFLOW bits. Write back the bits actually read instead so the driver avoids clobbering the OVERFLOW bit that comes after the register is read.
FIRST-EPSS: 0.000450000
NVD-IS: 3.6
NVD-ES: 1.8
ARPS-PRIORITY: 0.7131285
#ExploitObserverAlert
WLB-2024040057
DESCRIPTION: Exploit Observer has 1 entries in 1 file formats related to WLB-2024040057. LRMS-PHP-by-oretnom23-v1.0 hat-trick.
ARPS-PRIORITY: 0.8026542
WLB-2024040057
DESCRIPTION: Exploit Observer has 1 entries in 1 file formats related to WLB-2024040057. LRMS-PHP-by-oretnom23-v1.0 hat-trick.
ARPS-PRIORITY: 0.8026542
#ExploitObserverAlert
CVE-2024-21511
DESCRIPTION: Exploit Observer has 3 entries in 1 file formats related to CVE-2024-21511. Versions of the package mysql2 before 3.9.7 are vulnerable to Arbitrary Code Injection due to improper sanitization of the timezone parameter in the readCodeFor function by calling a native MySQL Server date/time function.
FIRST-EPSS: 0.000450000
ARPS-PRIORITY: 0.7131285
CVE-2024-21511
DESCRIPTION: Exploit Observer has 3 entries in 1 file formats related to CVE-2024-21511. Versions of the package mysql2 before 3.9.7 are vulnerable to Arbitrary Code Injection due to improper sanitization of the timezone parameter in the readCodeFor function by calling a native MySQL Server date/time function.
FIRST-EPSS: 0.000450000
ARPS-PRIORITY: 0.7131285
#ExploitObserverAlert
CVE-2024-21511
DESCRIPTION: Exploit Observer has 3 entries in 1 file formats related to CVE-2024-21511. Versions of the package mysql2 before 3.9.7 are vulnerable to Arbitrary Code Injection due to improper sanitization of the timezone parameter in the readCodeFor function by calling a native MySQL Server date/time function.
FIRST-EPSS: 0.000450000
ARPS-PRIORITY: 0.7131285
CVE-2024-21511
DESCRIPTION: Exploit Observer has 3 entries in 1 file formats related to CVE-2024-21511. Versions of the package mysql2 before 3.9.7 are vulnerable to Arbitrary Code Injection due to improper sanitization of the timezone parameter in the readCodeFor function by calling a native MySQL Server date/time function.
FIRST-EPSS: 0.000450000
ARPS-PRIORITY: 0.7131285
#ExploitObserverAlert
CVE-2017-6929
DESCRIPTION: Exploit Observer has 13 entries in 3 file formats related to CVE-2017-6929. A jQuery cross site scripting vulnerability is present when making Ajax requests to untrusted domains. This vulnerability is mitigated by the fact that it requires contributed or custom modules in order to exploit. For Drupal 8, this vulnerability was already fixed in Drupal 8.4.0 in the Drupal core upgrade to jQuery 3. For Drupal 7, it is fixed in the current release (Drupal 7.57) for jQuery 1.4.4 (the version that ships with Drupal 7 core) as well as for other newer versions of jQuery that might be used on the site, for example using the jQuery Update module.
FIRST-EPSS: 0.002670000
NVD-IS: 2.7
NVD-ES: 2.8
ARPS-PRIORITY: 0.7765482
CVE-2017-6929
DESCRIPTION: Exploit Observer has 13 entries in 3 file formats related to CVE-2017-6929. A jQuery cross site scripting vulnerability is present when making Ajax requests to untrusted domains. This vulnerability is mitigated by the fact that it requires contributed or custom modules in order to exploit. For Drupal 8, this vulnerability was already fixed in Drupal 8.4.0 in the Drupal core upgrade to jQuery 3. For Drupal 7, it is fixed in the current release (Drupal 7.57) for jQuery 1.4.4 (the version that ships with Drupal 7 core) as well as for other newer versions of jQuery that might be used on the site, for example using the jQuery Update module.
FIRST-EPSS: 0.002670000
NVD-IS: 2.7
NVD-ES: 2.8
ARPS-PRIORITY: 0.7765482
#ExploitObserverAlert
CVE-2021-20282
DESCRIPTION: Exploit Observer has 16 entries in 3 file formats related to CVE-2021-20282. When creating a user account, it was possible to verify the account without having access to the verification email link/secret in moodle before 3.10.2, 3.9.5, 3.8.8, 3.5.17.
FIRST-EPSS: 0.001570000
NVD-IS: 1.4
NVD-ES: 3.9
ARPS-PRIORITY: 0.7702185
CVE-2021-20282
DESCRIPTION: Exploit Observer has 16 entries in 3 file formats related to CVE-2021-20282. When creating a user account, it was possible to verify the account without having access to the verification email link/secret in moodle before 3.10.2, 3.9.5, 3.8.8, 3.5.17.
FIRST-EPSS: 0.001570000
NVD-IS: 1.4
NVD-ES: 3.9
ARPS-PRIORITY: 0.7702185
#ExploitObserverAlert
CVE-2023-40547
DESCRIPTION: Exploit Observer has 2078 entries in 42 file formats related to CVE-2023-40547. A remote code execution vulnerability was found in Shim. The Shim boot support trusts attacker-controlled values when parsing an HTTP response. This flaw allows an attacker to craft a specific malicious HTTP request, leading to a completely controlled out-of-bounds write primitive and complete system compromise. This flaw is only exploitable during the early boot phase, an attacker needs to perform a Man-in-the-Middle or compromise the boot server to be able to exploit this vulnerability successfully.
FIRST-EPSS: 0.005410000
NVD-IS: 6.0
NVD-ES: 1.6
ARPS-PRIORITY: 0.9632835
CVE-2023-40547
DESCRIPTION: Exploit Observer has 2078 entries in 42 file formats related to CVE-2023-40547. A remote code execution vulnerability was found in Shim. The Shim boot support trusts attacker-controlled values when parsing an HTTP response. This flaw allows an attacker to craft a specific malicious HTTP request, leading to a completely controlled out-of-bounds write primitive and complete system compromise. This flaw is only exploitable during the early boot phase, an attacker needs to perform a Man-in-the-Middle or compromise the boot server to be able to exploit this vulnerability successfully.
FIRST-EPSS: 0.005410000
NVD-IS: 6.0
NVD-ES: 1.6
ARPS-PRIORITY: 0.9632835
#ExploitObserverAlert
CVE-2021-40695
DESCRIPTION: Exploit Observer has 8 entries in 3 file formats related to CVE-2021-40695. It was possible for a student to view their quiz grade before it had been released, using a quiz web service.
FIRST-EPSS: 0.000540000
NVD-IS: 1.4
NVD-ES: 2.8
ARPS-PRIORITY: 0.7712735
CVE-2021-40695
DESCRIPTION: Exploit Observer has 8 entries in 3 file formats related to CVE-2021-40695. It was possible for a student to view their quiz grade before it had been released, using a quiz web service.
FIRST-EPSS: 0.000540000
NVD-IS: 1.4
NVD-ES: 2.8
ARPS-PRIORITY: 0.7712735
#ExploitObserverAlert
CVE-2018-7602
DESCRIPTION: Exploit Observer has 309 entries in 19 file formats related to CVE-2018-7602. A remote code execution vulnerability exists within multiple subsystems of Drupal 7.x and 8.x. This potentially allows attackers to exploit multiple attack vectors on a Drupal site, which could result in the site being compromised. This vulnerability is related to Drupal core - Highly critical - Remote Code Execution - SA-CORE-2018-002. Both SA-CORE-2018-002 and this vulnerability are being exploited in the wild.
FIRST-EPSS: 0.974550000
NVD-IS: 5.9
NVD-ES: 3.9
ARPS-PRIORITY: 0.9656657
CVE-2018-7602
DESCRIPTION: Exploit Observer has 309 entries in 19 file formats related to CVE-2018-7602. A remote code execution vulnerability exists within multiple subsystems of Drupal 7.x and 8.x. This potentially allows attackers to exploit multiple attack vectors on a Drupal site, which could result in the site being compromised. This vulnerability is related to Drupal core - Highly critical - Remote Code Execution - SA-CORE-2018-002. Both SA-CORE-2018-002 and this vulnerability are being exploited in the wild.
FIRST-EPSS: 0.974550000
NVD-IS: 5.9
NVD-ES: 3.9
ARPS-PRIORITY: 0.9656657
#ExploitObserverAlert
CVE-2020-28838
DESCRIPTION: Exploit Observer has 7 entries in 4 file formats related to CVE-2020-28838. Cross Site Request Forgery (CSRF) in CART option in OpenCart Ltd. Opencart CMS 3.0.3.6 allows attacker to add cart items via Add to cart.
FIRST-EPSS: 0.000670000
NVD-IS: 1.4
NVD-ES: 2.1
ARPS-PRIORITY: 0.8656445
CVE-2020-28838
DESCRIPTION: Exploit Observer has 7 entries in 4 file formats related to CVE-2020-28838. Cross Site Request Forgery (CSRF) in CART option in OpenCart Ltd. Opencart CMS 3.0.3.6 allows attacker to add cart items via Add to cart.
FIRST-EPSS: 0.000670000
NVD-IS: 1.4
NVD-ES: 2.1
ARPS-PRIORITY: 0.8656445
#ExploitObserverAlert
CVE-2018-1133
DESCRIPTION: Exploit Observer has 19 entries in 5 file formats related to CVE-2018-1133. An issue was discovered in Moodle 3.x. A Teacher creating a Calculated question can intentionally cause remote code execution on the server, aka eval injection.
FIRST-EPSS: 0.864060000
NVD-IS: 5.9
NVD-ES: 2.8
ARPS-PRIORITY: 0.862425
CVE-2018-1133
DESCRIPTION: Exploit Observer has 19 entries in 5 file formats related to CVE-2018-1133. An issue was discovered in Moodle 3.x. A Teacher creating a Calculated question can intentionally cause remote code execution on the server, aka eval injection.
FIRST-EPSS: 0.864060000
NVD-IS: 5.9
NVD-ES: 2.8
ARPS-PRIORITY: 0.862425
#ExploitObserverAlert
CVE-2019-10874
DESCRIPTION: Exploit Observer has 11 entries in 3 file formats related to CVE-2019-10874. Cross Site Request Forgery (CSRF) in the bolt/upload File Upload feature in Bolt CMS 3.6.6 allows remote attackers to execute arbitrary code by uploading a JavaScript file to include executable extensions in the file/edit/config/config.yml configuration file.
FIRST-EPSS: 0.055500000
NVD-IS: 5.9
NVD-ES: 2.8
ARPS-PRIORITY: 0.8750708
CVE-2019-10874
DESCRIPTION: Exploit Observer has 11 entries in 3 file formats related to CVE-2019-10874. Cross Site Request Forgery (CSRF) in the bolt/upload File Upload feature in Bolt CMS 3.6.6 allows remote attackers to execute arbitrary code by uploading a JavaScript file to include executable extensions in the file/edit/config/config.yml configuration file.
FIRST-EPSS: 0.055500000
NVD-IS: 5.9
NVD-ES: 2.8
ARPS-PRIORITY: 0.8750708
#ExploitObserverAlert
CVE-2024-31804
DESCRIPTION: Exploit Observer has 8 entries in 3 file formats related to CVE-2024-31804. An unquoted service path vulnerability in Terratec DMX_6Fire USB v.1.23.0.02 allows a local attacker to escalate privileges via the Program.exe component.
FIRST-EPSS: 0.000840000
ARPS-PRIORITY: 0.8610423
CVE-2024-31804
DESCRIPTION: Exploit Observer has 8 entries in 3 file formats related to CVE-2024-31804. An unquoted service path vulnerability in Terratec DMX_6Fire USB v.1.23.0.02 allows a local attacker to escalate privileges via the Program.exe component.
FIRST-EPSS: 0.000840000
ARPS-PRIORITY: 0.8610423
#ExploitObserverAlert
PD/http/vulnerabilities/titan/titannit-web-ssrf
DESCRIPTION: Exploit Observer has 4 entries in 4 file formats related to PD/http/vulnerabilities/titan/titannit-web-ssrf. The vulnerability in the device enables an unauthorized attacker to execute system commands with elevated privileges. This exploit is facilitated through the use of the 'getcommand' query within the application,allowing the attacker to gain root access.
ARPS-PRIORITY: 0.9513637
PD/http/vulnerabilities/titan/titannit-web-ssrf
DESCRIPTION: Exploit Observer has 4 entries in 4 file formats related to PD/http/vulnerabilities/titan/titannit-web-ssrf. The vulnerability in the device enables an unauthorized attacker to execute system commands with elevated privileges. This exploit is facilitated through the use of the 'getcommand' query within the application,allowing the attacker to gain root access.
ARPS-PRIORITY: 0.9513637
#ExploitObserverAlert
CVE-2023-31446
DESCRIPTION: Exploit Observer has 10 entries in 5 file formats related to CVE-2023-31446. In Cassia Gateway firmware XC1000_2.1.1.2303082218 and XC2000_2.1.1.2303090947, the queueUrl parameter in /bypass/config is not sanitized. This leads to injecting Bash code and executing it with root privileges on device startup.
FIRST-EPSS: 0.019820000
NVD-IS: 5.9
NVD-ES: 3.9
ARPS-PRIORITY: 0.9521352
CVE-2023-31446
DESCRIPTION: Exploit Observer has 10 entries in 5 file formats related to CVE-2023-31446. In Cassia Gateway firmware XC1000_2.1.1.2303082218 and XC2000_2.1.1.2303090947, the queueUrl parameter in /bypass/config is not sanitized. This leads to injecting Bash code and executing it with root privileges on device startup.
FIRST-EPSS: 0.019820000
NVD-IS: 5.9
NVD-ES: 3.9
ARPS-PRIORITY: 0.9521352