Recent Advisories

Severity ID Title Vendor Product Date Type
NONE PACKETSTORM:215430

📄 JUNG Smart Panel 5.1 KNX Unauthenticated Absolute File Path Traversal_PACKETSTORM:215430

The JUNG Smart Panel 5.1 KNX controller suffers from a directory traversal vulnerability. Exploiting this issue will allow an unauthenticated attac...

N/A N/A PACKETSTORM
HIGH 7.2 PACKETSTORM:215369

📄 motionEye 0.43.1b4 Remote Code Execution_PACKETSTORM:215369

Client-side validation in motionEye's web UI can be bypassed via overriding the JS validation function. Arbitrary values including shell interpolat...

N/A N/A PACKETSTORM
HIGH 10 PACKETSTORM:215330

📄 Qualys Security Advisory – GHOST glibc gethostbyname Buffer Overflow_PACKETSTORM:215330

During a code audit performed internally at Qualys, they discovered a buffer overflow in the nsshostnamedigitsdots function of the GNU C Library gl...

N/A N/A PACKETSTORM
HIGH 7.2 PACKETSTORM:215331

libuser Denial of Service / Privilege Escalation_PACKETSTORM:215331

This is an old proof of concept from 2015 that demonstrates userhelper chfn newline filtering and libuser passwd file handling vulnerabilities...

N/A N/A PACKETSTORM
HIGH 10 PACKETSTORM:215377

📄 Qualys Security Advisory – Exim 21Nails Advisory_PACKETSTORM:215377

Qualys audited central parts of the Exim mail server and discovered 21 vulnerabilities, with 11 being local vulnerabilities and 10 being remote vul...

N/A N/A PACKETSTORM
CRITICAL 9.8 PACKETSTORM:215279

📄 Ivanti Endpoint Manager Mobile (EPMM) Unauthenticated Remote Code Execution_PACKETSTORM:215279

This Metasploit module exploits a OS command injection issue in Ivanti Endpoint Manager Mobile EPMM, formerly known as MobileIron. A remote attacke...

N/A N/A PACKETSTORM
HIGH 7.5 PACKETSTORM:215214

📄 crypto/x509 TLS Certificate Parsing_PACKETSTORM:215214

This Go program demonstrates a theoretical denial of service risk associated with handling unusually large X.509 certificates in TLS connections. I...

N/A N/A PACKETSTORM
HIGH 7.1 PACKETSTORM:215212

📄 Samsung MP3 Decoder Out-Of-Bounds Read_PACKETSTORM:215212

Proof of concept exploit for a Samsung MP3 Decoder smp123djointstereov1 out-of-bounds read enabling potential ASLR bypass...

N/A N/A PACKETSTORM
NONE PACKETSTORM:215238

📄 openSIS Classic 9.2 Path Traversal_PACKETSTORM:215238

openSIS Classic version 9.2 suffers from a path traversal vulnerability that allows for local file inclusion...

N/A N/A PACKETSTORM
CRITICAL 9.8 PACKETSTORM:215255

📄 Palo Alto Networks PAN-OS 11.2 PHP Code Injection_PACKETSTORM:215255

Palo Alto Networks PAN-OS version 11.2 proof of concept remote command execution exploit that also leverages an authentication bypass vulnerability...

N/A N/A PACKETSTORM