Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 4.3 PACKETSTORM:214067

📄 Siklu EtherHaul Series EH-8010 / EH-1200 Arbitrary File Upload_PACKETSTORM:214067

Siklu EtherHaul Series EH-8010 and EH-1200 with firmware versions between 7.4.0 and 10.7.3 suffer from an unauthenticated arbitrary file upload vul...

N/A N/A PACKETSTORM
CRITICAL 9.8 PACKETSTORM:214068

📄 Siklu EtherHaul Series EH-8010 / EH-1200 Remote Command Execution_PACKETSTORM:214068

Siklu EtherHaul Series EH-8010 and EH-1200 with firmware versions between 7.4.0 and 10.7.3 suffer from a remote command execution vulnerability...

N/A N/A PACKETSTORM
CRITICAL 9.8 PACKETSTORM:214064

📄 RPi-Jukebox-RFID 2.8.0 Remote Code Execution_PACKETSTORM:214064

RPi-Jukebox-RFID version 2.8.0 proof of concept exploit that demonstrates an OS command injection vulnerability in the shuffle.php API endpoint. Th...

N/A N/A PACKETSTORM
NONE PACKETSTORM:214046

📄 Abacre Retail Point of Sale 14.0.0.396 SQL Injection_PACKETSTORM:214046

Abacre Retail Point of Sale version 14.0.0.396 suffers from a remote blind SQL injection vulnerability...

N/A N/A PACKETSTORM
NONE PACKETSTORM:214045

📄 Abacre Retail Point of Sale 14.0.0.396 Cross Site Scripting_PACKETSTORM:214045

Abacre Retail Point of Sale version 14.0.0.396 suffers from a persistent cross site scripting vulnerability...

N/A N/A PACKETSTORM
NONE PACKETSTORM:214049

📄 ahu.mlsp.government.bg Cross Site Scripting_PACKETSTORM:214049

ahu.mlsp.government.bg suffers from a cross site scripting issue. The researcher has waited over a year after reporting this to make public, so hop...

N/A N/A PACKETSTORM
HIGH 7.5 PACKETSTORM:214047

📄 Chamillo LMS 1.11.2 Missing Cache Header_PACKETSTORM:214047

Chamillo LMS version 1.11.2 is missing a cache header that leads to information disclosure...

N/A N/A PACKETSTORM
CRITICAL 9.3 PACKETSTORM:213984

📄 AVideo Notify.ffmpeg.json.php Unauthenticated Remote Code Execution_PACKETSTORM:213984

This Metasploit module exploits an unauthenticated remote code execution vulnerability in the AVideos notify.ffmpeg.json.php endpoint. The vulnerab...

N/A N/A PACKETSTORM
NONE PACKETSTORM:213897

📄 Control Web Panel 0.9.8.1208 Remote Code Execution_PACKETSTORM:213897

Control Web Panel CWP versions less than or equal to 0.9.8.1208 are vulnerable to unauthenticated OS command injection. User input passed via the "...

N/A N/A PACKETSTORM
CRITICAL 9.9 PACKETSTORM:213896

📄 n8n Workflow Expression Remote Code Execution_PACKETSTORM:213896

This Metasploit module exploits a critical remote code execution vulnerability CVE-2025-68613 in the n8n workflow automation platform. The vulnerab...

N/A N/A PACKETSTORM