#ExploitObserverAlert
WLB-2024040061
DESCRIPTION: Exploit Observer has 1 entries in 1 file formats related to WLB-2024040061. Hikvision Camera - Remote command execution.
ARPS-PRIORITY: 0.8504802
WLB-2024040061
DESCRIPTION: Exploit Observer has 1 entries in 1 file formats related to WLB-2024040061. Hikvision Camera - Remote command execution.
ARPS-PRIORITY: 0.8504802
#ExploitObserverAlert
WLB-2024040059
DESCRIPTION: Exploit Observer has 1 entries in 1 file formats related to WLB-2024040059. Nginx 1.25.5 Host Header Validation.
ARPS-PRIORITY: 0.8504802
WLB-2024040059
DESCRIPTION: Exploit Observer has 1 entries in 1 file formats related to WLB-2024040059. Nginx 1.25.5 Host Header Validation.
ARPS-PRIORITY: 0.8504802
#ExploitObserverAlert
CVE-2020-8559
DESCRIPTION: Exploit Observer has 30 entries in 9 file formats related to CVE-2020-8559. The Kubernetes kube-apiserver in versions v1.6-v1.15, and versions prior to v1.16.13, v1.17.9 and v1.18.6 are vulnerable to an unvalidated redirect on proxied upgrade requests that could allow an attacker to escalate privileges from a node compromise to a full cluster compromise.
FIRST-EPSS: 0.003410000
NVD-IS: 5.9
NVD-ES: 0.9
ARPS-PRIORITY: 0.9659869
CVE-2020-8559
DESCRIPTION: Exploit Observer has 30 entries in 9 file formats related to CVE-2020-8559. The Kubernetes kube-apiserver in versions v1.6-v1.15, and versions prior to v1.16.13, v1.17.9 and v1.18.6 are vulnerable to an unvalidated redirect on proxied upgrade requests that could allow an attacker to escalate privileges from a node compromise to a full cluster compromise.
FIRST-EPSS: 0.003410000
NVD-IS: 5.9
NVD-ES: 0.9
ARPS-PRIORITY: 0.9659869
#ExploitObserverAlert
CVE-2021-33816
DESCRIPTION: Exploit Observer has 12 entries in 5 file formats related to CVE-2021-33816. The website builder module in Dolibarr 13.0.2 allows remote PHP code execution because of an incomplete protection mechanism in which system, exec, and shell_exec are blocked but backticks are not blocked.
FIRST-EPSS: 0.034950000
NVD-IS: 5.9
NVD-ES: 3.9
ARPS-PRIORITY: 0.8722215
CVE-2021-33816
DESCRIPTION: Exploit Observer has 12 entries in 5 file formats related to CVE-2021-33816. The website builder module in Dolibarr 13.0.2 allows remote PHP code execution because of an incomplete protection mechanism in which system, exec, and shell_exec are blocked but backticks are not blocked.
FIRST-EPSS: 0.034950000
NVD-IS: 5.9
NVD-ES: 3.9
ARPS-PRIORITY: 0.8722215
#ExploitObserverAlert
CVE-2019-16108
DESCRIPTION: Exploit Observer has 8 entries in 3 file formats related to CVE-2019-16108. phpBB 3.2.7 allows adding an arbitrary Cascading Style Sheets (CSS) token sequence to a page through BBCode.
FIRST-EPSS: 0.001190000
NVD-IS: 3.6
NVD-ES: 3.9
ARPS-PRIORITY: 0.7626645
CVE-2019-16108
DESCRIPTION: Exploit Observer has 8 entries in 3 file formats related to CVE-2019-16108. phpBB 3.2.7 allows adding an arbitrary Cascading Style Sheets (CSS) token sequence to a page through BBCode.
FIRST-EPSS: 0.001190000
NVD-IS: 3.6
NVD-ES: 3.9
ARPS-PRIORITY: 0.7626645
#ExploitObserverAlert
CVE-2020-24913
DESCRIPTION: Exploit Observer has 16 entries in 4 file formats related to CVE-2020-24913. A SQL injection vulnerability in qcubed (all versions including 3.1.1) in profile.php via the strQuery parameter allows an unauthenticated attacker to access the database by injecting SQL code via a crafted POST request.
FIRST-EPSS: 0.002480000
NVD-IS: 5.9
NVD-ES: 3.9
ARPS-PRIORITY: 0.9634872
CVE-2020-24913
DESCRIPTION: Exploit Observer has 16 entries in 4 file formats related to CVE-2020-24913. A SQL injection vulnerability in qcubed (all versions including 3.1.1) in profile.php via the strQuery parameter allows an unauthenticated attacker to access the database by injecting SQL code via a crafted POST request.
FIRST-EPSS: 0.002480000
NVD-IS: 5.9
NVD-ES: 3.9
ARPS-PRIORITY: 0.9634872
#ExploitObserverAlert
CVE-2018-20434
DESCRIPTION: Exploit Observer has 25 entries in 8 file formats related to CVE-2018-20434. LibreNMS 1.46 allows remote attackers to execute arbitrary OS commands by using the $_POST['community'] parameter to html/pages/addhost.inc.php during creation of a new device, and then making a /ajax_output.php?id=capture&format=text&type=snmpwalk&hostname=localhost request that triggers html/includes/output/capture.inc.php command mishandling.
FIRST-EPSS: 0.968060000
NVD-IS: 5.9
NVD-ES: 3.9
ARPS-PRIORITY: 0.9661231
CVE-2018-20434
DESCRIPTION: Exploit Observer has 25 entries in 8 file formats related to CVE-2018-20434. LibreNMS 1.46 allows remote attackers to execute arbitrary OS commands by using the $_POST['community'] parameter to html/pages/addhost.inc.php during creation of a new device, and then making a /ajax_output.php?id=capture&format=text&type=snmpwalk&hostname=localhost request that triggers html/includes/output/capture.inc.php command mishandling.
FIRST-EPSS: 0.968060000
NVD-IS: 5.9
NVD-ES: 3.9
ARPS-PRIORITY: 0.9661231
#ExploitObserverAlert
CVE-2021-21809
DESCRIPTION: Exploit Observer has 16 entries in 6 file formats related to CVE-2021-21809. A command execution vulnerability exists in the default legacy spellchecker plugin in Moodle 3.10. A specially crafted series of HTTP requests can lead to command execution. An attacker must have administrator privileges to exploit this vulnerabilities.
FIRST-EPSS: 0.024130000
NVD-IS: 6.0
NVD-ES: 2.3
ARPS-PRIORITY: 0.9560088
CVE-2021-21809
DESCRIPTION: Exploit Observer has 16 entries in 6 file formats related to CVE-2021-21809. A command execution vulnerability exists in the default legacy spellchecker plugin in Moodle 3.10. A specially crafted series of HTTP requests can lead to command execution. An attacker must have administrator privileges to exploit this vulnerabilities.
FIRST-EPSS: 0.024130000
NVD-IS: 6.0
NVD-ES: 2.3
ARPS-PRIORITY: 0.9560088
#ExploitObserverAlert
CVE-2020-7666
DESCRIPTION: Exploit Observer has 9 entries in 3 file formats related to CVE-2020-7666. This affects all versions of package github.com/u-root/u-root/pkg/cpio. It is vulnerable to leading, non-leading relative path traversal attacks and symlink based (relative and absolute) path traversal attacks in cpio file extraction.
FIRST-EPSS: 0.000930000
NVD-IS: 3.6
NVD-ES: 3.9
ARPS-PRIORITY: 0.7780067
CVE-2020-7666
DESCRIPTION: Exploit Observer has 9 entries in 3 file formats related to CVE-2020-7666. This affects all versions of package github.com/u-root/u-root/pkg/cpio. It is vulnerable to leading, non-leading relative path traversal attacks and symlink based (relative and absolute) path traversal attacks in cpio file extraction.
FIRST-EPSS: 0.000930000
NVD-IS: 3.6
NVD-ES: 3.9
ARPS-PRIORITY: 0.7780067
#ExploitObserverAlert
CVE-2020-24914
DESCRIPTION: Exploit Observer has 13 entries in 4 file formats related to CVE-2020-24914. A PHP object injection bug in profile.php in qcubed (all versions including 3.1.1) unserializes the untrusted data of the POST-variable "strProfileData" and allows an unauthenticated attacker to execute code via a crafted POST request.
FIRST-EPSS: 0.016790000
NVD-IS: 5.9
NVD-ES: 3.9
ARPS-PRIORITY: 0.8646988
CVE-2020-24914
DESCRIPTION: Exploit Observer has 13 entries in 4 file formats related to CVE-2020-24914. A PHP object injection bug in profile.php in qcubed (all versions including 3.1.1) unserializes the untrusted data of the POST-variable "strProfileData" and allows an unauthenticated attacker to execute code via a crafted POST request.
FIRST-EPSS: 0.016790000
NVD-IS: 5.9
NVD-ES: 3.9
ARPS-PRIORITY: 0.8646988
#ExploitObserverAlert
CVE-2018-5233
DESCRIPTION: Exploit Observer has 14 entries in 6 file formats related to CVE-2018-5233. Cross-site scripting (XSS) vulnerability in system/src/Grav/Common/Twig/Twig.php in Grav CMS before 1.3.0 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to admin/tools.
FIRST-EPSS: 0.002940000
NVD-IS: 2.7
NVD-ES: 2.8
ARPS-PRIORITY: 0.9571319
CVE-2018-5233
DESCRIPTION: Exploit Observer has 14 entries in 6 file formats related to CVE-2018-5233. Cross-site scripting (XSS) vulnerability in system/src/Grav/Common/Twig/Twig.php in Grav CMS before 1.3.0 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to admin/tools.
FIRST-EPSS: 0.002940000
NVD-IS: 2.7
NVD-ES: 2.8
ARPS-PRIORITY: 0.9571319
#ExploitObserverAlert
WLB-2024040063
DESCRIPTION: Exploit Observer has 1 entries in 1 file formats related to WLB-2024040063. Palo Alto PAN-OS Command Execution / Arbitrary File Creation.
ARPS-PRIORITY: 0.8504802
WLB-2024040063
DESCRIPTION: Exploit Observer has 1 entries in 1 file formats related to WLB-2024040063. Palo Alto PAN-OS Command Execution / Arbitrary File Creation.
ARPS-PRIORITY: 0.8504802
#ExploitObserverAlert
CVE-2015-2068
DESCRIPTION: Exploit Observer has 13 entries in 7 file formats related to CVE-2015-2068. Multiple cross-site scripting (XSS) vulnerabilities in the MAGMI (aka Magento Mass Importer) plugin for Magento Server allow remote attackers to inject arbitrary web script or HTML via the (1) profile parameter to web/magmi.php or (2) QUERY_STRING to web/magmi_import_run.php.
FIRST-EPSS: 0.001460000
NVD-IS: 2.9
NVD-ES: 8.6
ARPS-PRIORITY: 0.9744999
CVE-2015-2068
DESCRIPTION: Exploit Observer has 13 entries in 7 file formats related to CVE-2015-2068. Multiple cross-site scripting (XSS) vulnerabilities in the MAGMI (aka Magento Mass Importer) plugin for Magento Server allow remote attackers to inject arbitrary web script or HTML via the (1) profile parameter to web/magmi.php or (2) QUERY_STRING to web/magmi_import_run.php.
FIRST-EPSS: 0.001460000
NVD-IS: 2.9
NVD-ES: 8.6
ARPS-PRIORITY: 0.9744999
#ExploitObserverAlert
CVE-2019-6799
DESCRIPTION: Exploit Observer has 17 entries in 10 file formats related to CVE-2019-6799. An issue was discovered in phpMyAdmin before 4.8.5. When the AllowArbitraryServer configuration setting is set to true, with the use of a rogue MySQL server, an attacker can read any file on the server that the web server's user can access. This is related to the mysql.allow_local_infile PHP configuration, and the inadvertent ignoring of "options(MYSQLI_OPT_LOCAL_INFILE" calls.
FIRST-EPSS: 0.182900000
NVD-IS: 3.6
NVD-ES: 2.2
ARPS-PRIORITY: 0.9624088
CVE-2019-6799
DESCRIPTION: Exploit Observer has 17 entries in 10 file formats related to CVE-2019-6799. An issue was discovered in phpMyAdmin before 4.8.5. When the AllowArbitraryServer configuration setting is set to true, with the use of a rogue MySQL server, an attacker can read any file on the server that the web server's user can access. This is related to the mysql.allow_local_infile PHP configuration, and the inadvertent ignoring of "options(MYSQLI_OPT_LOCAL_INFILE" calls.
FIRST-EPSS: 0.182900000
NVD-IS: 3.6
NVD-ES: 2.2
ARPS-PRIORITY: 0.9624088
#ExploitObserverAlert
CVE-2018-10188
DESCRIPTION: Exploit Observer has 14 entries in 4 file formats related to CVE-2018-10188. phpMyAdmin 4.8.0 before 4.8.0-1 has CSRF, allowing an attacker to execute arbitrary SQL statements, related to js/db_operations.js, js/tbl_operations.js, libraries/classes/Operations.php, and sql.php.
FIRST-EPSS: 0.006300000
NVD-IS: 5.9
NVD-ES: 2.8
ARPS-PRIORITY: 0.8753146
CVE-2018-10188
DESCRIPTION: Exploit Observer has 14 entries in 4 file formats related to CVE-2018-10188. phpMyAdmin 4.8.0 before 4.8.0-1 has CSRF, allowing an attacker to execute arbitrary SQL statements, related to js/db_operations.js, js/tbl_operations.js, libraries/classes/Operations.php, and sql.php.
FIRST-EPSS: 0.006300000
NVD-IS: 5.9
NVD-ES: 2.8
ARPS-PRIORITY: 0.8753146
#ExploitObserverAlert
CVE-2020-29555
DESCRIPTION: Exploit Observer has 10 entries in 3 file formats related to CVE-2020-29555. The BackupDelete functionality in Grav CMS through 1.7.0-rc.17 allows an authenticated attacker to delete arbitrary files on the underlying server by exploiting a path-traversal technique. (This vulnerability can also be exploited by an unauthenticated attacker due to a lack of CSRF protection.)
FIRST-EPSS: 0.000810000
NVD-IS: 5.2
NVD-ES: 2.8
ARPS-PRIORITY: 0.7616317
CVE-2020-29555
DESCRIPTION: Exploit Observer has 10 entries in 3 file formats related to CVE-2020-29555. The BackupDelete functionality in Grav CMS through 1.7.0-rc.17 allows an authenticated attacker to delete arbitrary files on the underlying server by exploiting a path-traversal technique. (This vulnerability can also be exploited by an unauthenticated attacker due to a lack of CSRF protection.)
FIRST-EPSS: 0.000810000
NVD-IS: 5.2
NVD-ES: 2.8
ARPS-PRIORITY: 0.7616317
#ExploitObserverAlert
CVE-2019-16686
DESCRIPTION: Exploit Observer has 10 entries in 3 file formats related to CVE-2019-16686. Dolibarr 9.0.5 has stored XSS in a User Note section to note.php. A user with no privileges can inject script to attack the admin.
FIRST-EPSS: 0.000580000
NVD-IS: 2.7
NVD-ES: 2.3
ARPS-PRIORITY: 0.7616317
CVE-2019-16686
DESCRIPTION: Exploit Observer has 10 entries in 3 file formats related to CVE-2019-16686. Dolibarr 9.0.5 has stored XSS in a User Note section to note.php. A user with no privileges can inject script to attack the admin.
FIRST-EPSS: 0.000580000
NVD-IS: 2.7
NVD-ES: 2.3
ARPS-PRIORITY: 0.7616317
#ExploitObserverAlert
CVE-2020-29553
DESCRIPTION: Exploit Observer has 10 entries in 3 file formats related to CVE-2020-29553. The Scheduler in Grav CMS through 1.7.0-rc.17 allows an attacker to execute a system command by tricking an admin into visiting a malicious website (CSRF).
FIRST-EPSS: 0.001050000
NVD-IS: 5.9
NVD-ES: 2.8
ARPS-PRIORITY: 0.7616317
CVE-2020-29553
DESCRIPTION: Exploit Observer has 10 entries in 3 file formats related to CVE-2020-29553. The Scheduler in Grav CMS through 1.7.0-rc.17 allows an attacker to execute a system command by tricking an admin into visiting a malicious website (CSRF).
FIRST-EPSS: 0.001050000
NVD-IS: 5.9
NVD-ES: 2.8
ARPS-PRIORITY: 0.7616317
#ExploitObserverAlert
WLB-2024040064
DESCRIPTION: Exploit Observer has 1 entries in 1 file formats related to WLB-2024040064. Relate Learning And Teaching system Version before 2024.1 SSTI(Markup Sandbox function) lead to RCE.
ARPS-PRIORITY: 0.8504802
WLB-2024040064
DESCRIPTION: Exploit Observer has 1 entries in 1 file formats related to WLB-2024040064. Relate Learning And Teaching system Version before 2024.1 SSTI(Markup Sandbox function) lead to RCE.
ARPS-PRIORITY: 0.8504802
#ExploitObserverAlert
CVE-2023-25790
DESCRIPTION: Exploit Observer has 11 entries in 3 file formats related to CVE-2023-25790. Improper Authentication, Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in xtemos WoodMart allows Cross-Site Scripting (XSS).This issue affects WoodMart: from n/a through 7.0.4.
FIRST-EPSS: 0.000430000
ARPS-PRIORITY: 0.865513
CVE-2023-25790
DESCRIPTION: Exploit Observer has 11 entries in 3 file formats related to CVE-2023-25790. Improper Authentication, Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in xtemos WoodMart allows Cross-Site Scripting (XSS).This issue affects WoodMart: from n/a through 7.0.4.
FIRST-EPSS: 0.000430000
ARPS-PRIORITY: 0.865513
#ExploitObserverAlert
WLB-2024040065
DESCRIPTION: Exploit Observer has 1 entries in 1 file formats related to WLB-2024040065. FortiNet FortiClient EMS 7.2.2 / 7.0.10 SQL Injection / Remote Code Execution.
ARPS-PRIORITY: 0.8504802
WLB-2024040065
DESCRIPTION: Exploit Observer has 1 entries in 1 file formats related to WLB-2024040065. FortiNet FortiClient EMS 7.2.2 / 7.0.10 SQL Injection / Remote Code Execution.
ARPS-PRIORITY: 0.8504802