Total
2510 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2022-0921 | 1 Microweber | 1 Microweber | 2024-08-02 | 6.7 Medium |
Abusing Backup/Restore feature to achieve Remote Code Execution in GitHub repository microweber/microweber prior to 1.2.12. | ||||
CVE-2022-1033 | 1 Craterapp | 1 Crater | 2024-08-02 | 7.8 High |
Unrestricted Upload of File with Dangerous Type in GitHub repository crater-invoice/crater prior to 6.0.6. | ||||
CVE-2022-1008 | 1 Ocdi | 1 One Click Demo Import | 2024-08-02 | 7.2 High |
The One Click Demo Import WordPress plugin before 3.1.0 does not validate the imported file, allowing high privilege users such as admin to upload arbitrary files (such as PHP) even when FILE_MODS and FILE_EDIT are disallowed | ||||
CVE-2022-0959 | 1 Postgresql | 1 Pgadmin 4 | 2024-08-02 | 6.5 Medium |
A malicious, but authorised and authenticated user can construct an HTTP request using their existing CSRF token and session cookie to manually upload files to any location that the operating system user account under which pgAdmin is running has permission to write. | ||||
CVE-2022-0962 | 1 Showdoc | 1 Showdoc | 2024-08-02 | 5.4 Medium |
Stored XSS viva .webma file upload in GitHub repository star7th/showdoc prior to 2.10.4. | ||||
CVE-2022-0930 | 1 Microweber | 1 Microweber | 2024-08-02 | 4.8 Medium |
File upload filter bypass leading to stored XSS in GitHub repository microweber/microweber prior to 1.2.12. | ||||
CVE-2022-0912 | 1 Microweber | 1 Microweber | 2024-08-02 | 4.8 Medium |
Unrestricted Upload of File with Dangerous Type in GitHub repository microweber/microweber prior to 1.2.11. | ||||
CVE-2022-0960 | 1 Showdoc | 1 Showdoc | 2024-08-02 | 5.4 Medium |
Stored XSS viva .properties file upload in GitHub repository star7th/showdoc prior to 2.10.4. | ||||
CVE-2022-0945 | 1 Showdoc | 1 Showdoc | 2024-08-02 | 5.4 Medium |
Stored XSS viva axd and cshtml file upload in star7th/showdoc in GitHub repository star7th/showdoc prior to v2.10.4. | ||||
CVE-2022-0888 | 1 Ninjaforms | 1 Ninja Forms File Uploads | 2024-08-02 | 9.8 Critical |
The Ninja Forms - File Uploads Extension WordPress plugin is vulnerable to arbitrary file uploads due to insufficient input file type validation found in the ~/includes/ajax/controllers/uploads.php file which can be bypassed making it possible for unauthenticated attackers to upload malicious files that can be used to obtain remote code execution, in versions up to and including 3.3.0 | ||||
CVE-2022-0863 | 1 Wp Svg Icons Project | 1 Wp Svg Icons | 2024-08-02 | 7.2 High |
The WP SVG Icons WordPress plugin through 3.2.3 does not properly validate uploaded custom icon packs, allowing an high privileged user like an admin to upload a zip file containing malicious php code, leading to remote code execution. | ||||
CVE-2022-0687 | 1 Tms-outsource | 1 Amelia | 2024-08-02 | 8.8 High |
The Amelia WordPress plugin before 1.0.47 stores image blobs into actual files whose extension is controlled by the user, which may lead to PHP backdoors being uploaded onto the site. This vulnerability can be exploited by logged-in users with the custom "Amelia Manager" role. | ||||
CVE-2022-0537 | 1 Mappresspro | 1 Mappress | 2024-08-02 | 7.2 High |
The MapPress Maps for WordPress plugin before 2.73.13 allows a high privileged user to bypass the DISALLOW_FILE_EDIT and DISALLOW_FILE_MODS settings and upload arbitrary files to the site through the "ajax_save" function. The file is written relative to the current 's stylesheet directory, and a .php file extension is added. No validation is performed on the content of the file, triggering an RCE vulnerability by uploading a web shell. Further the name parameter is not sanitized, allowing the payload to be uploaded to any directory to which the server has write access. | ||||
CVE-2022-0517 | 1 Mozilla | 1 Vpn | 2024-08-02 | 7.8 High |
Mozilla VPN can load an OpenSSL configuration file from an unsecured directory. A user or attacker with limited privileges could leverage this to launch arbitrary code with SYSTEM privilege. This vulnerability affects Mozilla VPN < 2.7.1. | ||||
CVE-2022-0472 | 1 Laracom Project | 1 Laracom | 2024-08-02 | 5.4 Medium |
Unrestricted Upload of File with Dangerous Type in Packagist jsdecena/laracom prior to v2.0.9. | ||||
CVE-2022-0499 | 1 Sermon Browser Project | 1 Sermon Browser | 2024-08-02 | 8.8 High |
The Sermon Browser WordPress plugin through 0.45.22 does not have CSRF checks in place when uploading Sermon files, and does not validate them in any way, allowing attackers to make a logged in admin upload arbitrary files such as PHP ones. | ||||
CVE-2022-0440 | 1 Catchplugins | 1 Catch Themes Demo Import | 2024-08-02 | 7.2 High |
The Catch Themes Demo Import WordPress plugin before 2.1.1 does not validate one of the file to be imported, which could allow high privivilege admin to upload an arbitrary PHP file and gain RCE even in the case of an hardened blog (ie DISALLOW_UNFILTERED_HTML, DISALLOW_FILE_EDIT and DISALLOW_FILE_MODS constants set to true) | ||||
CVE-2022-0403 | 1 Wpjos | 1 Library File Manager | 2024-08-02 | 8.1 High |
The Library File Manager WordPress plugin before 5.2.3 is using an outdated version of the elFinder library, which is know to be affected by security issues (CVE-2021-32682), and does not have any authorisation as well as CSRF checks in its connector AJAX action, allowing any authenticated users, such as subscriber to call it. Furthermore, as the options passed to the elFinder library does not restrict any file type, users with a role as low as subscriber can Create/Upload/Delete Arbitrary files and folders. | ||||
CVE-2022-0409 | 1 Showdoc | 1 Showdoc | 2024-08-02 | 7.8 High |
Unrestricted Upload of File with Dangerous Type in Packagist showdoc/showdoc prior to 2.10.2. | ||||
CVE-2022-0263 | 1 Pimcore | 1 Pimcore | 2024-08-02 | 7.8 High |
Unrestricted Upload of File with Dangerous Type in Packagist pimcore/pimcore prior to 10.2.7. |