Recent Advisories

Severity ID Title Vendor Product Date Type
NONE PACKETSTORM:213261

📄 Institute Admission Software 2.5 SQL Injection_PACKETSTORM:213261

Institute Admission Software version 2.5 suffers from a remote SQL injection vulnerability...

N/A N/A PACKETSTORM
NONE PACKETSTORM:213262

📄 Textpattern 4.9.0 Cross Site Scripting_PACKETSTORM:213262

Textpattern CMS version 4.9.0 contains a persistent cross site scripting vulnerability in the administrative interface. The vulnerability allows au...

N/A N/A PACKETSTORM
NONE PACKETSTORM:213265

📄 PKP-WAL 3.5.0-1 SQL Injection_PACKETSTORM:213265

PKP-WAL versions 3.5.0-1 and below suffer from a remote SQL injection vulnerability in the Institution Collector...

N/A N/A PACKETSTORM
NONE PACKETSTORM:213267

📄 PKP-WAL 3.5.0-1 baseColour LESS Code Injection_PACKETSTORM:213267

PKP-WAL versions 3.5.0-1 and below suffer from a LESS baseColour related code injection vulnerability...

N/A N/A PACKETSTORM
NONE PACKETSTORM:213268

📄 PKP-WAL 3.5.0-3 X-Forwarded-Host LESS Code Injection_PACKETSTORM:213268

PKP-WAL versions 3.5.0-3 and below suffer from a LESS X-Forwarded-Host related code injection vulnerability...

N/A N/A PACKETSTORM
CRITICAL 9.1 PACKETSTORM:213257

📄 Apache mod_ssl TLS 1.3 Client Certificate Authentication Bypass_PACKETSTORM:213257

Apache modssl TLS 1.3 client certificate authentication bypass proof of concept exploit...

N/A N/A PACKETSTORM
NONE PACKETSTORM:213266

📄 Open Journal Systems 3.5.0-1 Path Traversal_PACKETSTORM:213266

Open Journal Systems versions 3.5.0-1 and below suffer from a path traversal vulnerability in NativeXmlIssueGalleyFilter.php...

N/A N/A PACKETSTORM
HIGH 7.1 PACKETSTORM:213259

📄 GALAYOU G2 IP Camera Authentication Bypass_PACKETSTORM:213259

A critical authentication bypass vulnerability exists in the RTSP service of the GALAYOU G2 IP camera. The device exposes multiple RTSP stream endp...

N/A N/A PACKETSTORM
NONE PACKETSTORM:213260

📄 HP ProCurve 4.00 Credential Disclosure_PACKETSTORM:213260

Proof of concept code that performs a credential dumping attack against vulnerable HP ProCurve SNAC systems...

N/A N/A PACKETSTORM
CRITICAL 9.9 PACKETSTORM:213258

📄 Crafty Controller 4.6.1 Remote Code Execution / Server-Side Template Injection_PACKETSTORM:213258

Crafty Controller version 4.6.1 allows authenticated remote attackers to execute arbitrary system commands on the target server through server-side...

N/A N/A PACKETSTORM