Recent Advisories

Severity ID Title Vendor Product Date Type
NONE PACKETSTORM:214898

📄 Monstra CMS 3.0.4 Shell Upload_PACKETSTORM:214898

Monstra CMS version 3.0.4 proof of concept remote shell upload exploit...

N/A N/A PACKETSTORM
HIGH 10 PACKETSTORM:214926

📄 NCR Command Center Agent 16.3 Remote Command Execution_PACKETSTORM:214926

Proof of concept exploit for a remote command execution vulnerability in NCR Command Center Agent version 16.3 on Aloha POS/BOH servers. The vulner...

N/A N/A PACKETSTORM
HIGH 8.5 PACKETSTORM:214910

📄 Mutiny 5.0-1.07 Directory Traversal_PACKETSTORM:214910

Mutiny version 5.0-1.07 directory traversal proof of concept exploit that demonstrates an issue originally discovered in 2013...

N/A N/A PACKETSTORM
HIGH 7.2 PACKETSTORM:214947

📄 Blesta 5.13.1 Admin Interface PHP Object Injection_PACKETSTORM:214947

Blesta versions 3.0.0 through 5.13.1 suffer from an administrative interface PHP object injection vulnerability. The vulnerabilities exist because ...

N/A N/A PACKETSTORM
HIGH 7.2 PACKETSTORM:214899

📄 MotionEye Frontend 0.43.1b4 Command Injection_PACKETSTORM:214899

Proof of concept exploit for a command injection vulnerability in MotionEye Frontend version 0.43.1b4...

N/A N/A PACKETSTORM
NONE PACKETSTORM:214921

📄 NanoMQ 0.24.6 API SQL Rule Engine Buffer Overflow_PACKETSTORM:214921

This script is a proof of concept used to test NanoMQ's API for improper input handling. It sends an intentionally long and malformed SQL alias thr...

N/A N/A PACKETSTORM
HIGH 8.8 PACKETSTORM:214917

📄 Nagios XI Monitoring Wizard Command Injection_PACKETSTORM:214917

Nagios XI is a widely used enterprise monitoring solution. A vulnerability exists within the Monitoring Wizard configuration page where the databas...

N/A N/A PACKETSTORM
MEDIUM 4.7 PACKETSTORM:214946

📄 Blesta 5.13.1 Cross Site Scripting_PACKETSTORM:214946

Blesta versions 3.2.0 through 5.13.1 suffer from a cross site scripting vulnerability. User input passed through the confirmurl GET parameter to th...

N/A N/A PACKETSTORM
NONE PACKETSTORM:214907

📄 mPDF 8.1.0 Server-Side Request Forgery / Local File Disclosure / DoS_PACKETSTORM:214907

mPDF version 8.1.0 is vulnerable to multiple security issues related to unsafe handling of external resources, file paths, and image content during...

N/A N/A PACKETSTORM
HIGH 7.5 PACKETSTORM:214948

📄 Blesta 5.13.1 2Checkout PHP Object Injection_PACKETSTORM:214948

Blesta versions 3.0.0 through 5.13.1 suffer from a 2Checkout PHP object injection vulnerability. The vulnerabilities exist because user input passe...

N/A N/A PACKETSTORM