Vulnerabilities with Nuclei Scanner Templates
Updated 6h agoSearch and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.
4,077 results
Clear all
CVE-2021-20114
7.5
HIGH
NUCLEI
EPSS 0.54
TCExam <= 14.8.1 - Info Disclosure
When installed following the default/recommended settings, TCExam <= 14.8.1 allowed unauthenticated users to access the /cache/backup/ directory, which included sensitive database backup files.
CWE-425
Jul 30, 2021
CVE-2021-22707
9.8
CRITICAL
EXPLOITED
NUCLEI
EPSS 0.92
Schneider-electric Evlink City Evc1s22p4 Firmware < r8_v3.4.0.1 - Hard-coded Credentials
A CWE-798: Use of Hard-coded Credentials vulnerability exists in EVlink City (EVC1S22P4 / EVC1S7P4 all versions prior to R8 V3.4.0.1), EVlink Parking (EVW2 / EVF2 / EV.2 all versions prior to R8 V3.4.0.1), and EVlink Smart Wallbox (EVB1A all versions prior to R8 V3.4.0.1 ) that could allow an attacker to issue unauthorized commands to the charging station web server with administrative privileges.
CWE-798
Jul 21, 2021
CVE-2021-22145
6.5
MEDIUM
3 PoCs
Analysis
NUCLEI
EPSS 0.68
Elasticsearch < 7.13.3 - Information Disclosure
A memory disclosure vulnerability was identified in Elasticsearch 7.10.0 to 7.13.3 error reporting. A user with the ability to submit arbitrary queries to Elasticsearch could submit a malformed query that would result in an error message returned containing previously used portions of a data buffer. This buffer could contain sensitive information such as Elasticsearch documents or authentication details.
CWE-209
Jul 21, 2021
CVE-2021-24452
6.1
MEDIUM
NUCLEI
EPSS 0.08
Boldgrid W3 Total Cache < 2.1.5 - XSS
The W3 Total Cache WordPress plugin before 2.1.5 was affected by a reflected Cross-Site Scripting (XSS) issue within the "extension" parameter in the Extensions dashboard, when the 'Anonymously track usage to improve product quality' setting is enabled, as the parameter is output in a JavaScript context without proper escaping. This could allow an attacker, who can convince an authenticated admin into clicking a link, to run malicious JavaScript within the user's web browser, which could lead to full site compromise.
CWE-79
Jul 19, 2021
CVE-2021-24436
6.1
MEDIUM
NUCLEI
EPSS 0.05
Boldgrid W3 Total Cache < 2.1.4 - XSS
The W3 Total Cache WordPress plugin before 2.1.4 was vulnerable to a reflected Cross-Site Scripting (XSS) security vulnerability within the "extension" parameter in the Extensions dashboard, which is output in an attribute without being escaped first. This could allow an attacker, who can convince an authenticated admin into clicking a link, to run malicious JavaScript within the user's web browser, which could lead to full site compromise.
CWE-79
Jul 19, 2021
CVE-2021-21816
4.3
MEDIUM
NUCLEI
EPSS 0.77
Dlink Dir-3040 Firmware - Information Disclosure
An information disclosure vulnerability exists in the Syslog functionality of D-LINK DIR-3040 1.13B03. A specially crafted network request can lead to the disclosure of sensitive information. An attacker can send an HTTP request to trigger this vulnerability.
CWE-200
Jul 16, 2021
CVE-2021-21803
6.1
MEDIUM
NUCLEI
EPSS 0.74
Advantech R-seenet - XSS
This vulnerability is present in device_graph_page.php script, which is a part of the Advantech R-SeeNet web applications. A specially crafted URL by an attacker and visited by a victim can lead to arbitrary JavaScript code execution.
CWE-79
Jul 16, 2021
CVE-2021-21802
6.1
MEDIUM
NUCLEI
EPSS 0.67
Advantech R-seenet - XSS
This vulnerability is present in device_graph_page.php script, which is a part of the Advantech R-SeeNet web applications. A specially crafted URL by an attacker and visited by a victim can lead to arbitrary JavaScript code execution.
CWE-79
Jul 16, 2021
CVE-2021-21801
6.1
MEDIUM
EXPLOITED
NUCLEI
EPSS 0.85
Advantech R-seenet - XSS
This vulnerability is present in device_graph_page.php script, which is a part of the Advantech R-SeeNet web applications. A specially crafted URL by an attacker and visited by a victim can lead to arbitrary JavaScript code execution.
CWE-79
Jul 16, 2021
CVE-2021-21800
6.1
MEDIUM
NUCLEI
EPSS 0.68
Advantech R-seenet - XSS
Cross-site scripting vulnerabilities exist in the ssh_form.php script functionality of Advantech R-SeeNet v 2.4.12 (20.10.2020). If a user visits a specially crafted URL, it can lead to arbitrary JavaScript code execution in the context of the targeted user’s browser. An attacker can provide a crafted URL to trigger this vulnerability.
CWE-79
Jul 16, 2021
CVE-2021-21799
6.1
MEDIUM
NUCLEI
EPSS 0.76
Advantech R-seenet - XSS
Cross-site scripting vulnerabilities exist in the telnet_form.php script functionality of Advantech R-SeeNet v 2.4.12 (20.10.2020). If a user visits a specially crafted URL, it can lead to arbitrary JavaScript code execution in the context of the targeted user’s browser. An attacker can provide a crafted URL to trigger this vulnerability.
CWE-79
Jul 16, 2021
CVE-2021-24442
9.8
CRITICAL
EXPLOITED
NUCLEI
EPSS 0.73
Wpdevart Poll, Survey, Questionnaire And Voting System - SQL Injection
The Poll, Survey, Questionnaire and Voting system WordPress plugin before 1.5.3 did not sanitise, escape or validate the date_answers[] POST parameter before using it in a SQL statement when sending a Poll result, allowing unauthenticated users to perform SQL Injection attacks
CWE-89
Jul 12, 2021
CVE-2021-24409
6.1
MEDIUM
NUCLEI
EPSS 0.13
Plugin-planet Prismatic < 2.8 - XSS
The Prismatic WordPress plugin before 2.8 does not escape the 'tab' GET parameter before outputting it back in an attribute, leading to a reflected Cross-Site Scripting issue which will be executed in the context of a logged in administrator
CWE-79
Jul 12, 2021
CVE-2021-24407
6.1
MEDIUM
NUCLEI
EPSS 0.21
Tielabs Jannah < 5.4.5 - XSS
The Jannah WordPress theme before 5.4.5 did not properly sanitize the 'query' POST parameter in its tie_ajax_search AJAX action, leading to a Reflected Cross-site Scripting (XSS) vulnerability.
CWE-79
Jul 06, 2021
CVE-2021-24406
6.1
MEDIUM
NUCLEI
EPSS 0.09
Gvectors Wpforo Forum < 1.9.7 - Open Redirect
The wpForo Forum WordPress plugin before 1.9.7 did not validate the redirect_to parameter in the login form of the forum, leading to an open redirect issue after a successful login. Such issue could allow an attacker to induce a user to use a login URL redirecting to a website under their control and being a replica of the legitimate one, asking them to re-enter their credentials (which will then in the attacker hands)
CWE-601
Jul 06, 2021
CVE-2021-24389
6.1
MEDIUM
NUCLEI
EPSS 0.14
Chimpgroup Foodbakery < 2.2 - XSS
The WP Foodbakery WordPress plugin before 2.2, used in the FoodBakery WordPress theme before 2.2 did not properly sanitize the foodbakery_radius parameter before outputting it back in the response, leading to an unauthenticated Reflected Cross-Site Scripting (XSS) vulnerability.
CWE-79
Jul 06, 2021
CVE-2021-24387
6.1
MEDIUM
NUCLEI
EPSS 0.42
Contempothemes Real Estate 7 < 3.1.1 - XSS
The WP Pro Real Estate 7 WordPress theme before 3.1.1 did not properly sanitise the ct_community parameter in its search listing page before outputting it back in it, leading to a reflected Cross-Site Scripting which can be triggered in both unauthenticated or authenticated user context
CWE-79
Jul 06, 2021
CVE-2021-24370
9.8
CRITICAL
EXPLOITED
NUCLEI
EPSS 0.80
Radykal Fancy Product Designer < 4.6.9 - Unrestricted File Upload
The Fancy Product Designer WordPress plugin before 4.6.9 allows unauthenticated attackers to upload arbitrary files, resulting in remote code execution.
CWE-434
Jun 21, 2021
CVE-2021-24364
6.1
MEDIUM
NUCLEI
EPSS 0.02
Tielabs Jannah < 5.4.4 - XSS
The Jannah WordPress theme before 5.4.4 did not properly sanitize the options JSON parameter in its tie_get_user_weather AJAX action before outputting it back in the page, leading to a Reflected Cross-Site Scripting (XSS) vulnerability.
CWE-79
Jun 21, 2021
CVE-2021-24358
6.1
MEDIUM
NUCLEI
EPSS 0.03
Posimyth The Plus Addons For Elementor < 4.1.10 - Open Redirect
The Plus Addons for Elementor Page Builder WordPress plugin before 4.1.10 did not validate a redirect parameter on a specifically crafted URL before redirecting the user to it, leading to an Open Redirect issue.
CWE-601
Jun 14, 2021