Vulnerabilities with Nuclei Scanner Templates
Updated 1h agoSearch and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.
4,077 results
Clear all
CVE-2018-20062
9.8
CRITICAL
KEV
5 PoCs
Analysis
NUCLEI
EPSS 0.94
NoneCms V1.3 - RCE
An issue was discovered in NoneCms V1.3. thinkphp/library/think/App.php allows remote attackers to execute arbitrary PHP code via crafted use of the filter parameter, as demonstrated by the s=index/\think\Request/input&filter=phpinfo&data=1 query string.
Dec 11, 2018
CVE-2018-1000861
9.8
CRITICAL
KEV
RANSOMWARE
2 PoCs
Analysis
NUCLEI
EPSS 0.94
Jenkins <2.153 - RCE
A code execution vulnerability exists in the Stapler web framework used by Jenkins 2.153 and earlier, LTS 2.138.3 and earlier in stapler/core/src/main/java/org/kohsuke/stapler/MetaClass.java that allows attackers to invoke some methods on Java objects by accessing crafted URLs that were not intended to be invoked this way.
CWE-502
Dec 10, 2018
CVE-2018-20011
4.8
MEDIUM
1 PoC
Analysis
NUCLEI
EPSS 0.00
DomainMOD 4.11.01 - XSS
DomainMOD 4.11.01 has XSS via the assets/add/category.php Category Name or Stakeholder field.
CWE-79
Dec 10, 2018
CVE-2018-20010
4.8
MEDIUM
1 PoC
Analysis
NUCLEI
EPSS 0.00
DomainMOD 4.11.01 - XSS
DomainMOD 4.11.01 has XSS via the assets/add/ssl-provider-account.php username field.
CWE-79
Dec 10, 2018
CVE-2018-20009
4.8
MEDIUM
1 PoC
Analysis
NUCLEI
EPSS 0.00
DomainMOD 4.11.01 - XSS
DomainMOD 4.11.01 has XSS via the assets/add/ssl-provider.php SSL Provider Name or SSL Provider URL field.
CWE-79
Dec 10, 2018
CVE-2018-19915
4.8
MEDIUM
1 PoC
Analysis
NUCLEI
EPSS 0.00
DomainMOD <4.11.01 - XSS
DomainMOD through 4.11.01 has XSS via the assets/edit/host.php Web Host Name or Web Host URL field.
CWE-79
Dec 06, 2018
CVE-2018-19914
4.8
MEDIUM
1 PoC
Analysis
NUCLEI
EPSS 0.00
DomainMOD <4.11.01 - XSS
DomainMOD through 4.11.01 has XSS via the assets/add/dns.php Profile Name or notes field.
CWE-79
Dec 06, 2018
CVE-2018-19892
4.8
MEDIUM
NUCLEI
EPSS 0.01
DomainMOD <4.11.01 - XSS
DomainMOD through 4.11.01 has XSS via the admin/dw/add-server.php DisplayName, HostName, or UserName field.
CWE-79
Dec 06, 2018
CVE-2018-19753
7.5
HIGH
NUCLEI
EPSS 0.77
Tarantella Enterprise <3.11 - Path Traversal
Tarantella Enterprise before 3.11 allows Directory Traversal.
CWE-22
Dec 05, 2018
CVE-2018-19877
6.1
MEDIUM
1 PoC
Analysis
NUCLEI
EPSS 0.12
Adiscon LogAnalyzer <4.1.7 - XSS
login.php in Adiscon LogAnalyzer before 4.1.7 has XSS via the Login Button Referer field.
CWE-79
Dec 05, 2018
CVE-2018-19752
4.8
MEDIUM
1 PoC
Analysis
NUCLEI
EPSS 0.00
DomainMOD <4.11.01 - XSS
DomainMOD through 4.11.01 has XSS via the assets/add/registrar.php notes field for the Registrar.
CWE-79
Nov 29, 2018
CVE-2018-19751
4.8
MEDIUM
1 PoC
Analysis
NUCLEI
EPSS 0.00
DomainMOD <4.11.01 - XSS
DomainMOD through 4.11.01 has XSS via the admin/ssl-fields/add.php notes field for Custom SSL Fields.
CWE-79
Nov 29, 2018
CVE-2018-19749
4.8
MEDIUM
1 PoC
Analysis
NUCLEI
EPSS 0.00
DomainMOD <4.11.01 - XSS
DomainMOD through 4.11.01 has XSS via the assets/add/account-owner.php Owner name field.
CWE-79
Nov 29, 2018
CVE-2018-13317
6.1
MEDIUM
EXPLOITED
NUCLEI
EPSS 0.00
Totolink A3002ru Firmware - XSS
Password disclosure in password.htm in TOTOLINK A3002RU version 1.0.8 allows attackers to obtain the plaintext password for the admin user by making a GET request for password.htm.
CWE-79
Nov 26, 2018
CVE-2018-19458
7.5
HIGH
1 PoC
Analysis
NUCLEI
EPSS 0.80
PHP Proxy 3.0.3 - Info Disclosure
In PHP Proxy 3.0.3, any user can read files from the server without authentication due to an index.php?q=file:/// LFI URI, a different vulnerability than CVE-2018-19246.
CWE-287
Nov 22, 2018
CVE-2018-19410
9.8
CRITICAL
KEV
1 PoC
Analysis
NUCLEI
EPSS 0.93
PRTG Network Monitor <18.2.40.1683 - Local File Inclusion
PRTG Network Monitor before 18.2.40.1683 allows remote unauthenticated attackers to create users with read-write privileges (including administrator). A remote unauthenticated user can craft an HTTP request and override attributes of the 'include' directive in /public/login.htm and perform a Local File Inclusion attack, by including /api/addusers and executing it. By providing the 'id' and 'users' parameters, an unauthenticated attacker can create a user with read-write privileges (including administrator).
Nov 21, 2018
CVE-2018-19326
7.5
HIGH
NUCLEI
EPSS 0.58
Zyxel VMG1312-B10D <5.13(AAXA.8)C0 - Path Traversal
Zyxel VMG1312-B10D devices before 5.13(AAXA.8)C0 allow ../ Directory Traversal, as demonstrated by reading /etc/passwd.
CWE-22
Nov 17, 2018
CVE-2018-19287
6.1
MEDIUM
1 PoC
Analysis
NUCLEI
EPSS 0.12
Ninja Forms <3.3.18 - XSS
XSS in the Ninja Forms plugin before 3.3.18 for WordPress allows Remote Attackers to execute JavaScript via the includes/Admin/Menus/Submissions.php (aka submissions page) begin_date, end_date, or form_id parameter.
CWE-79
Nov 15, 2018
CVE-2018-19207
9.8
CRITICAL
EXPLOITED
4 PoCs
Analysis
NUCLEI
EPSS 0.92
Van Ons WP GDPR Compliance <1.4.3 - RCE
The Van Ons WP GDPR Compliance (aka wp-gdpr-compliance) plugin before 1.4.3 for WordPress allows remote attackers to execute arbitrary code because $wpdb->prepare() input is mishandled, as exploited in the wild in November 2018.
CWE-425
Nov 12, 2018
CVE-2018-19137
6.1
MEDIUM
NUCLEI
EPSS 0.00
Domainmod < 4.11.01 - XSS
DomainMOD through 4.11.01 has XSS via the assets/edit/ip-address.php ipid parameter.
CWE-79
Nov 09, 2018