Recent Advisories

Severity ID Title Vendor Product Date Type
NONE PACKETSTORM:212725

πŸ“„ Convio CMS 24.5 SQL Injection_PACKETSTORM:212725

Convio CMS version 24.5 proof of concept remote SQL injection exploit...

N/A N/A PACKETSTORM
CRITICAL 9.8 PACKETSTORM:212726

πŸ“„ WordPress WP for CPI 1.0.2 Shell Upload_PACKETSTORM:212726

WordPress WP for CPI plugin versions 1.0.2 and below suffer from an unauthenticated shell upload vulnerability...

N/A N/A PACKETSTORM
HIGH 10 PACKETSTORM:212668

πŸ“„ Exim Vulnerability Scanner_PACKETSTORM:212668

This is a multi-phase vulnerability scanning tool designed to detect and analyze security weaknesses in Exim mail servers. The tool performs compre...

N/A N/A PACKETSTORM
CRITICAL 9.3 PACKETSTORM:212664

πŸ“„ Clinic’s Patient Management System 2.0 Remote Code Execution_PACKETSTORM:212664

Clinic's Patient Management System version 2.0 proof of concept that combines SQL injection authentication bypass with an unrestricted file upload ...

N/A N/A PACKETSTORM
HIGH 7.8 PACKETSTORM:212665

iOS 12 / macOS 10.14 voucher_swap Use-After-Free_PACKETSTORM:212665

Proof of concept for an older vulnerability from 2019. A use-after-free vulnerability in Apple's Mach voucher subsystem affects macOS version 10.14...

N/A N/A PACKETSTORM
MEDIUM 6.9 PACKETSTORM:212666

πŸ“„ is-localhost-ip 2.0.0 Restriction Bypass_PACKETSTORM:212666

is-localhost-ip version 2.0.0 suffers from a restriction bypass vulnerability...

N/A N/A PACKETSTORM
NONE PACKETSTORM:212667

πŸ“„ Palo Alto Deep Packet Inspection Information Disclosure_PACKETSTORM:212667

Proof of concept code for Palo Alto deep packet inspection data exfiltration issues that appear to affect PanOS up to version 11.2.0...

N/A N/A PACKETSTORM
HIGH 7.5 PACKETSTORM:212662

πŸ“„ Arista NGFW 17.3.1 Information Disclosure Scanner_PACKETSTORM:212662

This is a proof of concept testing script for an information disclosure vulnerability in Arista NGFW version 17.3.1...

N/A N/A PACKETSTORM
HIGH 7.4 PACKETSTORM:212670

πŸ“„ YOURLS 1.8.2 SQL Injection_PACKETSTORM:212670

Proof of concept for a remote SQL injection vulnerability in YOURLS version 1.8.2...

N/A N/A PACKETSTORM
NONE PACKETSTORM:212672

πŸ“„ Redash Authenticated Remote Command Execution_PACKETSTORM:212672

Redash’s default setup uses PostgreSQL superuser credentials for its primary data source. Because users can run SQL through Redash, any authenticat...

N/A N/A PACKETSTORM