Vulnerabilities with Nuclei Scanner Templates

Updated 1h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

346,589 CVEs tracked 53,640 with exploits 4,860 exploited in wild 1,583 CISA KEV 4,077 Nuclei templates 52,361 vendors 43,897 researchers
4,077 results Clear all
CVE-2023-22620 7.5 HIGH EXPLOITED 1 Writeup NUCLEI EPSS 0.84
Securepoint Unified Threat Management - Incorrect Authorization
An issue was discovered in SecurePoint UTM before 12.2.5.1. The firewall's endpoint at /spcgi.cgi allows sessionid information disclosure via an invalid authentication attempt. This can afterwards be used to bypass the device's authentication and get access to the administrative interface.
CWE-863 Apr 12, 2023
CVE-2023-1880 6.1 MEDIUM 1 Writeup NUCLEI EPSS 0.14
thorsten/phpmyfaq <3.1.12 - XSS
Cross-site Scripting (XSS) - Reflected in GitHub repository thorsten/phpmyfaq prior to 3.1.12.
CWE-79 Apr 05, 2023
CVE-2023-20073 5.3 MEDIUM EXPLOITED 1 PoC Analysis NUCLEI EPSS 0.91
Cisco RV340-345 - File Upload
A vulnerability in the web-based management interface of Cisco RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers could allow an unauthenticated, remote attacker to upload arbitrary files to an affected device. This vulnerability is due to insufficient authorization enforcement mechanisms in the context of file uploads. An attacker could exploit this vulnerability by sending a crafted HTTP request to an affected device. A successful exploit could allow the attacker to upload arbitrary files to the affected device.
CWE-434 Apr 05, 2023
CVE-2023-1671 9.8 CRITICAL KEV 5 PoCs Analysis NUCLEI EPSS 0.94
Sophos Web Appliance <4.3.10.4 - Command Injection
A pre-auth command injection vulnerability in the warn-proceed handler of Sophos Web Appliance older than version 4.3.10.4 allows execution of arbitrary code.
CWE-77 Apr 04, 2023
CVE-2023-1177 9.3 CRITICAL EXPLOITED 8 PoCs Analysis NUCLEI EPSS 0.93
Lfprojects Mlflow < 2.2.1 - Path Traversal
Path Traversal: '\..\filename' in GitHub repository mlflow/mlflow prior to 2.2.1.
CWE-29 Mar 24, 2023
CVE-2023-0876 6.1 MEDIUM EXPLOITED NUCLEI EPSS 0.02
WP Meta SEO <4.5.3 - CSRF
The WP Meta SEO WordPress plugin before 4.5.3 does not authorize several ajax actions, allowing low-privilege users to make updates to certain data and leading to an arbitrary redirect vulnerability.
Mar 20, 2023
CVE-2023-0630 8.8 HIGH 1 PoC Analysis NUCLEI EPSS 0.90
Wp-slimstat Slimstat Analytics < 4.9.3.3 - SQL Injection
The Slimstat Analytics WordPress plugin before 4.9.3.3 does not prevent subscribers from rendering shortcodes that concatenates attributes directly into an SQL query.
CWE-89 Mar 20, 2023
CVE-2023-1496 5.4 MEDIUM 1 Writeup NUCLEI EPSS 0.40
GitHub imgproxy <3.14.0 - XSS
Cross-site Scripting (XSS) - Reflected in GitHub repository imgproxy/imgproxy prior to 3.14.0.
CWE-79 Mar 19, 2023
CVE-2023-24278 6.1 MEDIUM 1 PoC Analysis NUCLEI EPSS 0.65
Squidex <7.4.0 - XSS
Squidex before 7.4.0 was discovered to contain a squid.svg cross-site scripting (XSS) vulnerability.
CWE-79 Mar 18, 2023
CVE-2023-1454 6.3 MEDIUM EXPLOITED 8 PoCs Analysis NUCLEI EPSS 0.93
jeecg-boot 3.5.0 - SQL Injection
A vulnerability classified as critical has been found in jeecg-boot 3.5.0. This affects an unknown part of the file jmreport/qurestSql. The manipulation of the argument apiSelectId leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-223299.
CWE-89 Mar 17, 2023
CVE-2023-1389 8.8 HIGH KEV 7 PoCs Analysis NUCLEI EPSS 0.94
Tp-link Archer Ax21 Firmware < 1.1.4 - Command Injection
TP-Link Archer AX21 (AX1800) firmware versions before 1.1.4 Build 20230219 contained a command injection vulnerability in the country form of the /cgi-bin/luci;stok=/locale endpoint on the web management interface. Specifically, the country parameter of the write operation was not sanitized before being used in a call to popen(), allowing an unauthenticated attacker to inject commands, which would be run as root, with a simple POST request.
CWE-77 Mar 15, 2023
CVE-2023-0037 9.8 CRITICAL EXPLOITED NUCLEI EPSS 0.66
10Web Map Builder <1.0.73 - SQL Injection
The 10Web Map Builder for Google Maps WordPress plugin before 1.0.73 does not properly sanitise and escape some parameters before using them in an SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection
Mar 13, 2023
CVE-2023-1362 6.1 MEDIUM 1 Writeup NUCLEI EPSS 0.54
unilogies/bumsys <2.0.2 - Info Disclosure
Improper Restriction of Rendered UI Layers or Frames in GitHub repository unilogies/bumsys prior to v2.0.2.
CWE-1021 Mar 13, 2023
CVE-2023-1318 5.4 MEDIUM 1 Writeup NUCLEI EPSS 0.06
Enhancesoft Osticket < 1.16.6 - XSS
Cross-site Scripting (XSS) - Generic in GitHub repository osticket/osticket prior to v1.16.6.
CWE-79 Mar 10, 2023
CVE-2023-1317 5.4 MEDIUM 1 Writeup NUCLEI EPSS 0.06
Enhancesoft Osticket < 1.16.6 - XSS
Cross-site Scripting (XSS) - Reflected in GitHub repository osticket/osticket prior to v1.16.6.
CWE-79 Mar 10, 2023
CVE-2023-1315 5.4 MEDIUM 1 Writeup NUCLEI EPSS 0.10
Enhancesoft Osticket < 1.16.6 - XSS
Cross-site Scripting (XSS) - Reflected in GitHub repository osticket/osticket prior to v1.16.6.
CWE-79 Mar 10, 2023
CVE-2023-24657 6.1 MEDIUM 1 PoC Analysis NUCLEI EPSS 0.05
phpipam <1.6 - XSS
phpipam v1.6 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the closeClass parameter at /subnet-masks/popup.php.
CWE-79 Mar 08, 2023
CVE-2023-1263 5.3 MEDIUM NUCLEI EPSS 0.23
Niteothemes Coming Soon & Maintenance < 4.1.6 - Information Disclosure
The CMP – Coming Soon & Maintenance plugin for WordPress is vulnerable to Information Exposure in versions up to, and including, 4.1.6 via the cmp_get_post_detail function. This can allow unauthenticated individuals to obtain the contents of any non-password-protected, published post or page even when maintenance mode is enabled.
CWE-200 Mar 07, 2023
CVE-2023-24737 6.1 MEDIUM 1 Writeup NUCLEI EPSS 0.13
PMB v7.4.6 - XSS
PMB v7.4.6 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the query parameter at /admin/convert/export_z3950.php.
CWE-79 Mar 06, 2023
CVE-2023-24735 6.1 MEDIUM 1 Writeup NUCLEI EPSS 0.07
PMB <7.4.6 - Open Redirect
PMB v7.4.6 was discovered to contain an open redirect vulnerability via the component /opac_css/pmb.php. This vulnerability allows attackers to redirect victim users to an external domain via a crafted URL.
CWE-601 Mar 06, 2023