Fallos del tipo CWE-94

3754 resultados
CVE-2024-25502CRITICALDirectory Traversal vulnerability in flusity CMS v.2.4 allows a remote attacker to execute arbitrary code and obtain sensitive information vEPSS 1.4%CVE-2023-30130HIGHAn issue found in CraftCMS v.3.8.1 allows a remote attacker to execute arbitrary code via a crafted script to the Section parameter.EPSS 1.4%CVE-2024-9772HIGHUix Shortcodes – Compatible with Gutenberg <= 1.9.9 - Unauthenticated Arbitrary Shortcode ExecutionEPSS 1.4%CVE-2024-44414HIGHA vulnerability was discovered in FBM_292W-21.03.10V, which has been classified as critical. This issue affects the sub_4901E0 function in tEPSS 1.4%CVE-2016-15044CRITICALKaltura < 11.1.0-2 PHP Object Injection RCEEPSS 1.4%CVE-2024-45200MEDIUMIn Nintendo Mario Kart 8 Deluxe before 3.0.3, the LAN/LDN local multiplayer implementation allows a remote attacker to exploit a stack-basedEPSS 1.4%CVE-2023-21553HIGHAzure DevOps Server Remote Code Execution VulnerabilityEPSS 1.4%CVE-2023-47840CRITICALWordPress Qode Essential Addons Plugin <= 1.5.2 is vulnerable to Remote Code Execution (RCE)EPSS 1.4%CVE-2022-46157HIGHRemote php code execution in Akeneo PIMEPSS 1.4%CVE-2023-24776Funadmin v3.2.0 was discovered to contain a remote code execution (RCE) vulnerability via the component \controller\Addon.php.EPSS 1.4%CVE-2023-24114CRITICALtypecho 1.1/17.10.30 was discovered to contain a remote code execution (RCE) vulnerability via install.php.EPSS 1.4%CVE-2024-22514HIGHAn issue discovered in iSpyConnect.com Agent DVR 5.1.6.0 allows attackers to run arbitrary files by restoring a crafted backup file.EPSS 1.4%CVE-2013-10035HIGHProcessMaker Open Source < 2.5.2 neoclassic Skin PHP Code ExecutionEPSS 1.4%CVE-2007-5097CRITICALPHP remote file inclusion vulnerability in lib/classes/offl_nflteam.php in Online Fantasy Football League (OFFL) 0.2.6 allows remote attackeEPSS 1.4%CVE-2023-44011CRITICALAn issue in mojoPortal v.2.7.0.0 allows a remote attacker to execute arbitrary code via a crafted script to the layout.master skin file at tEPSS 1.4%CVE-2025-34089CRITICALRemote for Mac Unauthenticated Remote Code Execution via AppleScript InjectionEPSS 1.4%CVE-2021-37384CRITICALRCE (Remote Code Execution) vulnerability was found in some Furukawa ONU models, this vulnerability allows remote unauthenticated users to sEPSS 1.4%CVE-2024-28117HIGHGrav vulnerable to Server Side Template Injection (SSTI)EPSS 1.4%CVE-2023-27869MEDIUMIBM Db2 code executionEPSS 1.4%CVE-2023-27867MEDIUMIBM Db2 code executionEPSS 1.4%