Recent Advisories

Severity ID Title Vendor Product Date Type
NONE PACKETSTORM:215702

📄 eNet SMART HOME Server 2.3.1 Account Takeover_PACKETSTORM:215702

The eNet Smart Home system contains an authorization flaw in the resetUserPassword functionality that allows any authenticated low-privileged user ...

N/A N/A PACKETSTORM
HIGH 8.8 PACKETSTORM:215692

📄 mailcow: Dockerized Host Header Password Reset Poisoning_PACKETSTORM:215692

mailcow: dockerized versions prior to 2025-01a are vulnerable to Host header poisoning in the password reset workflow. The application incorrectly ...

N/A N/A PACKETSTORM
NONE PACKETSTORM:215699

📄 eNet SMART HOME Server 2.3.1 Default Credentials_PACKETSTORM:215699

The eNet Smart Home system ships with default credentials that remain active after installation and commissioning without enforcing a mandatory pas...

N/A N/A PACKETSTORM
NONE PACKETSTORM:215644

📄 Precurio Intranet Portal 4.4 Cross Site Request Forgery / Shell Upload_PACKETSTORM:215644

Precurio Intranet Portal version 4.4 proof of concept cross site request forgery and remote shell upload exploit...

N/A N/A PACKETSTORM
NONE PACKETSTORM:215700

📄 eNet SMART HOME Server 2.3.1 Arbitrary User Deletion_PACKETSTORM:215700

The eNet Smart Home system contains an authorization weakness in the deleteUserAccount JSON-RPC method that permits any authenticated low-privilege...

N/A N/A PACKETSTORM
NONE PACKETSTORM:215705

📄 eNet SMART HOME Server 2.3.1 Remote Privilege Escalation_PACKETSTORM:215705

The eNet Smart Home system suffers from a privilege escalation vulnerability due to insufficient authorization checks in the JSON-RPC endpoint for ...

N/A N/A PACKETSTORM
MEDIUM 5.9 PACKETSTORM:215597

📄 FortiGate Advanced Symlink Bypass Exploit_PACKETSTORM:215597

This Python script is an advanced exploitation tool targeting vulnerable FortiGate devices manufactured by Fortinet. It attempts to exploit a symli...

N/A N/A PACKETSTORM
CRITICAL 9.8 PACKETSTORM:215598

📄 GNU Inetutils 2.7 Authentication Bypass_PACKETSTORM:215598

GNU Inetutils version 2.7 telnet authentication bypass proof of concept exploit written in PHP...

N/A N/A PACKETSTORM
NONE PACKETSTORM:215610

📄 JUNG Smart Visu Server 1.1.1050 Denial of Service_PACKETSTORM:215610

Proof of concept exploit for a security vulnerability in JUNG Smart Visu Server version 1.1.1050 that allows unauthenticated remote attackers to tr...

N/A N/A PACKETSTORM
NONE PACKETSTORM:215599

📄 phpIPAM 1.4 Code Execution / Local File Inclusion_PACKETSTORM:215599

A critical local file inclusion vulnerability exists in in index.php in phpIPAM version 1.4. Attackers can exploit this to read sensitive system fi...

N/A N/A PACKETSTORM