Recent Advisories

Severity ID Title Vendor Product Date Type
CRITICAL 9.8 PACKETSTORM:213483

📄 WordPress Branda 3.4.24 Privilege Escalation_PACKETSTORM:213483

The Branda plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 3.4.24. This is du...

N/A N/A PACKETSTORM
NONE PACKETSTORM:213369

📄 NanoMQ 0.24.6 Remote Buffer Overflow_PACKETSTORM:213369

A stack-based buffer overflow vulnerability exists in NanoMQ version 0.24.6, allowing remote attackers to cause a denial of service and potentially...

N/A N/A PACKETSTORM
HIGH 8.8 PACKETSTORM:213358

📄 Zimbra Collaboration 10.0 / 10.1 Local File Inclusion_PACKETSTORM:213358

This is a proof of concept exploiting a local file inclusion vulnerability existing in the Webmail Classic UI of Zimbra Collaboration ZCS versions ...

N/A N/A PACKETSTORM
NONE PACKETSTORM:213315

📄 Netbus Backdoor 1.7 Remote Code Execution_PACKETSTORM:213315

Netbus Backdoor version 1.7 Metasploit module that leverages an insecure credential storage vulnerability that then performs command injection...

N/A N/A PACKETSTORM
NONE PACKETSTORM:213310

📄 Backdoor.Win32.ControlTotal.t Hardcoded-Password Backdoor_PACKETSTORM:213310

This tool was design to leverage a hardcoded password backdoor in Backdoor.Win32.ControlTotal.t to simulate communications with the malware...

N/A N/A PACKETSTORM
NONE PACKETSTORM:213312

📄 Backdoor.Win32.Poison.jh Insecure File Permissions / Privilege Escalation_PACKETSTORM:213312

This python script demonstrates a local privilege escalation exploit targeting a vulnerability in the Backdoor.Win32.Poison.jh malware sample. The ...

N/A N/A PACKETSTORM
NONE PACKETSTORM:213313

📄 Backdoor.Win32.Poison.jh Remote File Hijack_PACKETSTORM:213313

This code represents an educational Metasploit module concept that demonstrates how insecure file permissions created Backdoor.Win32.Poison.jh coul...

N/A N/A PACKETSTORM
NONE PACKETSTORM:213311

📄 Backdoor.Win32.Netbus.170 Blind Command Execution_PACKETSTORM:213311

This Metasploit module provides historical/educational exploitation of the Backdoor.Win32.Netbus.170 trojan, originally discovered in 1998. It repr...

N/A N/A PACKETSTORM
MEDIUM 6.1 PACKETSTORM:213314

📄 FuguHub 8.1 RSA Private Key Disclosure_PACKETSTORM:213314

A web-accessible documentation file in FuguHub version 8.1 was found to contain an embedded RSA private key paired with an X.509 certificate. The a...

N/A N/A PACKETSTORM
CRITICAL 9.1 PACKETSTORM:213296

📄 Adobe Commerce Insecure Deserialization_PACKETSTORM:213296

This flaw in Magento 2 / Adobe Commerce 2.4.x enables remote attackers to manipulate internal session handling paths and abuse PHP object chains Gu...

N/A N/A PACKETSTORM