Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 8.8 PACKETSTORM:213358

📄 Zimbra Collaboration 10.0 / 10.1 Local File Inclusion_PACKETSTORM:213358

This is a proof of concept exploiting a local file inclusion vulnerability existing in the Webmail Classic UI of Zimbra Collaboration ZCS versions ...

N/A N/A PACKETSTORM
NONE PACKETSTORM:213315

📄 Netbus Backdoor 1.7 Remote Code Execution_PACKETSTORM:213315

Netbus Backdoor version 1.7 Metasploit module that leverages an insecure credential storage vulnerability that then performs command injection...

N/A N/A PACKETSTORM
NONE PACKETSTORM:213310

📄 Backdoor.Win32.ControlTotal.t Hardcoded-Password Backdoor_PACKETSTORM:213310

This tool was design to leverage a hardcoded password backdoor in Backdoor.Win32.ControlTotal.t to simulate communications with the malware...

N/A N/A PACKETSTORM
NONE PACKETSTORM:213312

📄 Backdoor.Win32.Poison.jh Insecure File Permissions / Privilege Escalation_PACKETSTORM:213312

This python script demonstrates a local privilege escalation exploit targeting a vulnerability in the Backdoor.Win32.Poison.jh malware sample. The ...

N/A N/A PACKETSTORM
NONE PACKETSTORM:213313

📄 Backdoor.Win32.Poison.jh Remote File Hijack_PACKETSTORM:213313

This code represents an educational Metasploit module concept that demonstrates how insecure file permissions created Backdoor.Win32.Poison.jh coul...

N/A N/A PACKETSTORM
NONE PACKETSTORM:213311

📄 Backdoor.Win32.Netbus.170 Blind Command Execution_PACKETSTORM:213311

This Metasploit module provides historical/educational exploitation of the Backdoor.Win32.Netbus.170 trojan, originally discovered in 1998. It repr...

N/A N/A PACKETSTORM
MEDIUM 6.1 PACKETSTORM:213314

📄 FuguHub 8.1 RSA Private Key Disclosure_PACKETSTORM:213314

A web-accessible documentation file in FuguHub version 8.1 was found to contain an embedded RSA private key paired with an X.509 certificate. The a...

N/A N/A PACKETSTORM
CRITICAL 9.1 PACKETSTORM:213296

📄 Adobe Commerce Insecure Deserialization_PACKETSTORM:213296

This flaw in Magento 2 / Adobe Commerce 2.4.x enables remote attackers to manipulate internal session handling paths and abuse PHP object chains Gu...

N/A N/A PACKETSTORM
NONE PACKETSTORM:213292

📄 LINQPad 5.48.00 Insecure Deserialization_PACKETSTORM:213292

LINQPad versions up to 5.48.00 contain an insecure deserialization vulnerability in the paid version of the software that allows attackers to achie...

N/A N/A PACKETSTORM
NONE PACKETSTORM:213291

📄 Limesurvey 2.0 Arbitrary File Download_PACKETSTORM:213291

Limesurvey version 2.0 unauthenticated arbitrary file download proof of concept exploit...

N/A N/A PACKETSTORM