Recent Advisories

Severity ID Title Vendor Product Date Type
NONE PACKETSTORM:213572

📄 mrrb.bg Cross Site Scripting_PACKETSTORM:213572

The site at mrrb.bg suffers from a cross site scripting issue. The researcher has waited over a year after reporting this to make public, so hopefu...

N/A N/A PACKETSTORM
MEDIUM 5.3 PACKETSTORM:213575

📄 WordPress Chained Quiz 1.3.5 Insecure Direct Object Reference_PACKETSTORM:213575

WordPress Chained Quiz plugin versions 1.3.5 and below appear to suffer from an insecure direct object reference. The issue was partially patched i...

N/A N/A PACKETSTORM
NONE PACKETSTORM:213577

📄 FreeBSD rtsold 15.x Remote Code Execution_PACKETSTORM:213577

rtsold8 on FreeBSD processes IPv6 Router Advertisement DNSSL options without validating domain names for shell metacharacters. The decoded domains ...

N/A N/A PACKETSTORM
CRITICAL 9.8 PACKETSTORM:213483

📄 WordPress Branda 3.4.24 Privilege Escalation_PACKETSTORM:213483

The Branda plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 3.4.24. This is du...

N/A N/A PACKETSTORM
NONE PACKETSTORM:213369

📄 NanoMQ 0.24.6 Remote Buffer Overflow_PACKETSTORM:213369

A stack-based buffer overflow vulnerability exists in NanoMQ version 0.24.6, allowing remote attackers to cause a denial of service and potentially...

N/A N/A PACKETSTORM
HIGH 8.8 PACKETSTORM:213358

📄 Zimbra Collaboration 10.0 / 10.1 Local File Inclusion_PACKETSTORM:213358

This is a proof of concept exploiting a local file inclusion vulnerability existing in the Webmail Classic UI of Zimbra Collaboration ZCS versions ...

N/A N/A PACKETSTORM
NONE PACKETSTORM:213315

📄 Netbus Backdoor 1.7 Remote Code Execution_PACKETSTORM:213315

Netbus Backdoor version 1.7 Metasploit module that leverages an insecure credential storage vulnerability that then performs command injection...

N/A N/A PACKETSTORM
NONE PACKETSTORM:213310

📄 Backdoor.Win32.ControlTotal.t Hardcoded-Password Backdoor_PACKETSTORM:213310

This tool was design to leverage a hardcoded password backdoor in Backdoor.Win32.ControlTotal.t to simulate communications with the malware...

N/A N/A PACKETSTORM
NONE PACKETSTORM:213312

📄 Backdoor.Win32.Poison.jh Insecure File Permissions / Privilege Escalation_PACKETSTORM:213312

This python script demonstrates a local privilege escalation exploit targeting a vulnerability in the Backdoor.Win32.Poison.jh malware sample. The ...

N/A N/A PACKETSTORM
NONE PACKETSTORM:213313

📄 Backdoor.Win32.Poison.jh Remote File Hijack_PACKETSTORM:213313

This code represents an educational Metasploit module concept that demonstrates how insecure file permissions created Backdoor.Win32.Poison.jh coul...

N/A N/A PACKETSTORM