Recent Advisories

Severity ID Title Vendor Product Date Type
CRITICAL 9.8 PACKETSTORM:212982

๐Ÿ“„ JSONPath Plus Remote Code Execution_PACKETSTORM:212982

This Metasploit module exploits a remote code execution vulnerability in JSONPath Plus library versions prior to 10.3.0 The vulnerability allows ar...

N/A N/A PACKETSTORM
MEDIUM 5.3 PACKETSTORM:212971

๐Ÿ“„ js2py 0.74 Automated Sandbox Escape / Code Execution_PACKETSTORM:212971

js2py version 0.74 automated sandbox escape and remote code execution exploit with a reverse shell...

N/A N/A PACKETSTORM
NONE PACKETSTORM:212952

๐Ÿ“„ Cโ€‘Bitrix 25.100.500 Translate Module Arbitrary File Upload_PACKETSTORM:212952

Cโ€‘Bitrix version 25.100.500 proof of concept exploit that demonstrates an arbitrary file upload vulnerability in the translate module...

N/A N/A PACKETSTORM
NONE PACKETSTORM:212929

๐Ÿ“„ IGEL OS Workspace Edition 11.10.430 Persistent Payload_PACKETSTORM:212929

IGEL OS Workspace Edition version 11.10.430 contains a persistence mechanism that allows authenticated attackers with root access to establish pers...

N/A N/A PACKETSTORM
CRITICAL 9.8 PACKETSTORM:212930

๐Ÿ“„ Ilevia EVE X1/X5 Server 4.7.18.0.eden Root Privilege Escalation_PACKETSTORM:212930

A critical privilege escalation vulnerability exists in Ilevia EVE X1/X5 Server versions 4.7.18.0.eden and below. This is a proof of concept exploi...

N/A N/A PACKETSTORM
CRITICAL 10 PACKETSTORM:212934

๐Ÿ“„ Invision Community 5.0.6 customCss Expression Injection_PACKETSTORM:212934

Invision Community version 5.0.6 customCss expression injection proof of concept exploit written in PHP...

N/A N/A PACKETSTORM
HIGH 8.8 PACKETSTORM:212937

๐Ÿ“„ Ivanti Endpoint Manager Mobile 12.5.0.0 Expression Language Injection_PACKETSTORM:212937

Ivanti Endpoint Manager Mobile version 12.5.0.0 proof of concept exploit with a vulnerability chain that allows unauthenticated attackers to execut...

N/A N/A PACKETSTORM
CRITICAL 9.3 PACKETSTORM:212927

๐Ÿ“„ ICTBroadcast 7.0 Remote Code Execution_PACKETSTORM:212927

A vulnerability in ICTBroadcast version 7.0 allows unauthenticated remote command execution due to improper handling of session cookie values. An a...

N/A N/A PACKETSTORM
MEDIUM 5.3 PACKETSTORM:212926

๐Ÿ“„ IBM BigFix Platform 9.2 Information Disclosure_PACKETSTORM:212926

IBM BigFix Platform version 9.2 information gathering proof of concept exploit...

N/A N/A PACKETSTORM
HIGH 7.8 PACKETSTORM:212924

๐Ÿ“„ FastAPIโ€‘Based Delivery Server Proof of Concept_PACKETSTORM:212924

This proof of concept demonstrates how legacy ActiveX objects in Internet Explorer can be invoked automatically when a crafted HTML payload is deli...

N/A N/A PACKETSTORM