Recent Advisories

Severity ID Title Vendor Product Date Type
NONE PACKETSTORM:213210

๐Ÿ“„ Headlamp 0.38.0 Unauthenticated Cached Credentials Access_PACKETSTORM:213210

Proof of concept exploit for a flaw in Headlamp Kubernetes dashboard versions 0.38.0 and below that allows unauthenticated users to access sensitiv...

N/A N/A PACKETSTORM
HIGH 7.1 PACKETSTORM:213207

๐Ÿ“„ Adobe DNG SDK RefBaselineABCDtoRGB Out-Of-Bounds Read / Information Disclosure_PACKETSTORM:213207

This work presents a technical, researchโ€‘grade proof of concept demonstrating CVEโ€‘2025โ€‘64893, an out of bounds read vulnerability in Adobe DNG SDK ...

N/A N/A PACKETSTORM
HIGH 7.1 PACKETSTORM:213206

๐Ÿ“„ Adobe DNG SDK RefBaselineABCDtoRGB Out-Of-Bounds Read / Information Disclosure_PACKETSTORM:213206

This work presents a technical, researchโ€‘grade proof of concept demonstrating CVEโ€‘2025โ€‘64893, an out of bounds read vulnerability in Adobe DNG SDK ...

N/A N/A PACKETSTORM
NONE PACKETSTORM:213221

๐Ÿ“„ Assistive Technologies Persistence_PACKETSTORM:213221

This Metasploit module achieves persistence by registering a custom Assistive Technology AT in the Windows registry. Then it configures the system ...

N/A N/A PACKETSTORM
CRITICAL 10 PACKETSTORM:213220

๐Ÿ“„ HPE OneView Unauthenticated Remote Code Execution_PACKETSTORM:213220

This Metasploit module exploits an unauthenticated remote code execution vulnerability against Hewlett Packard Enterprise HPE OneView. All versions...

N/A N/A PACKETSTORM
HIGH 8.8 PACKETSTORM:213208

๐Ÿ“„ Pi-hole 5.18.3 Remote Code Execution_PACKETSTORM:213208

This PHP script is an authenticated remote code execution exploit targeting Pi-hole's web admin interface. It requires valid administrator credenti...

N/A N/A PACKETSTORM
NONE PACKETSTORM:213212

๐Ÿ“„ HEUR.Backdoor.Win32.Poison.gen MVID-2025-0701 DLL Hijacking_PACKETSTORM:213212

HEUR.Backdoor.Win32.Poison.gen malware looks for and executes a x32-bit "WININET.dll" PE file in its current directory. Therefore, we can hijack th...

N/A N/A PACKETSTORM
CRITICAL 9.8 PACKETSTORM:213137

๐Ÿ“„ libtransmission 2.93 Integer Overflow_PACKETSTORM:213137

libtransmission versions 2.93 and below suffer from multiple integer overflows. A remote attacker could create a specially crafted .torrent file wh...

N/A N/A PACKETSTORM
CRITICAL 9.8 PACKETSTORM:213140

๐Ÿ“„ WordPress ACF 0.9.1.1 Remote Code Execution_PACKETSTORM:213140

This Metasploit module exploits an unauthenticated remote code execution vulnerability in the Advanced Custom Fields: Extended ACF Extended WordPre...

N/A N/A PACKETSTORM
NONE PACKETSTORM:213136

๐Ÿ“„ LibreNMS 24.9.1 Code Injection_PACKETSTORM:213136

LibreNMS version 24.9.1 suffers from a remote command execution vulnerability...

N/A N/A PACKETSTORM