Recent Advisories

Severity ID Title Vendor Product Date Type
CRITICAL 9.1 PACKETSTORM:219059

📄 ChurchCRM Database Restore Remote Code Execution_PACKETSTORM:219059

This Metasploit module exploits a remote code execution vulnerability in ChurchCRM versions prior to 6.2.0. The vulnerability resides in the Databa...

N/A N/A PACKETSTORM
CRITICAL 9.8 PACKETSTORM:219020

📄 Fortinet FortiSandbox 4.4.8 Remote Command Execution_PACKETSTORM:219020

Fortinet FortiSandbox versions 4.4.0 through 4.4.8 suffer from a remote command execution vulnerability...

N/A N/A PACKETSTORM
HIGH 8.7 PACKETSTORM:218981

📄 Siemens SICAM A8000 25.30 Denial of Service / Memory Corruption_PACKETSTORM:218981

Siemens SICAM A8000 CP-8050/CP-8031/CP-8010/CP-8012 versions 25.30 and below suffer from Content-Length denial of service and XML related memory co...

N/A N/A PACKETSTORM
HIGH 7.1 PACKETSTORM:218980

📄 Siemens SICAM A8000 25.30 Denial of Service_PACKETSTORM:218980

Siemens SICAM A8000 CP-8050/CP-8031/CP-8010/CP-8012 versions 25.30 and below suffer from a resource exhaustion denial of service vulnerability...

N/A N/A PACKETSTORM
MEDIUM 5.4 PACKETSTORM:218979

📄 Kiuwan SAST 2.8.2412.0 Improper Enforcement_PACKETSTORM:218979

It was found out that a user is still able to login at the Kiuwan WebUI via SSO, even if the Kiuwan mapped account has been disabled in the user se...

N/A N/A PACKETSTORM
NONE PACKETSTORM:218892

📄 CMS Sense 2.0 Cross Site Scripting_PACKETSTORM:218892

CMS Sense version 2.0 suffers from a cross site scripting vulnerability...

N/A N/A PACKETSTORM
MEDIUM 4.9 PACKETSTORM:218881

📄 Twig Sandbox Bypass / XXE / Remote Code Execution / LFI_PACKETSTORM:218881

Research describing a critical vulnerability that exists in the October CMS Twig sandbox Safe Mode that allows authenticated users with template ed...

N/A N/A PACKETSTORM
NONE PACKETSTORM:218912

📄 WebRemoteControl Unauthenticated Remote Filesystem Access_PACKETSTORM:218912

WebRemoteControl suffers from an unauthenticated remote filesystem access vulnerability. This proof of concept exploit lets you browse directory co...

N/A N/A PACKETSTORM
NONE PACKETSTORM:218909

📄 Selenium Grid/Selenoid Unauthenticated Remote Code Execution_PACKETSTORM:218909

Selenium Grid and Selenoid expose a WebDriver API that allows creating browser sessions with arbitrary capabilities. When deployed without authenti...

N/A N/A PACKETSTORM
NONE PACKETSTORM:218911

📄 WebRemoteControl Unauthenticated Remote Code Execution_PACKETSTORM:218911

WebRemoteControl suffers from an unauthenticated remote code execution vulnerability...

N/A N/A PACKETSTORM