Recent Advisories

Severity ID Title Vendor Product Date Type
CRITICAL 9.1 PACKETSTORM:213257

📄 Apache mod_ssl TLS 1.3 Client Certificate Authentication Bypass_PACKETSTORM:213257

Apache modssl TLS 1.3 client certificate authentication bypass proof of concept exploit...

N/A N/A PACKETSTORM
NONE PACKETSTORM:213266

📄 Open Journal Systems 3.5.0-1 Path Traversal_PACKETSTORM:213266

Open Journal Systems versions 3.5.0-1 and below suffer from a path traversal vulnerability in NativeXmlIssueGalleyFilter.php...

N/A N/A PACKETSTORM
HIGH 7.1 PACKETSTORM:213259

📄 GALAYOU G2 IP Camera Authentication Bypass_PACKETSTORM:213259

A critical authentication bypass vulnerability exists in the RTSP service of the GALAYOU G2 IP camera. The device exposes multiple RTSP stream endp...

N/A N/A PACKETSTORM
NONE PACKETSTORM:213260

📄 HP ProCurve 4.00 Credential Disclosure_PACKETSTORM:213260

Proof of concept code that performs a credential dumping attack against vulnerable HP ProCurve SNAC systems...

N/A N/A PACKETSTORM
CRITICAL 9.9 PACKETSTORM:213258

📄 Crafty Controller 4.6.1 Remote Code Execution / Server-Side Template Injection_PACKETSTORM:213258

Crafty Controller version 4.6.1 allows authenticated remote attackers to execute arbitrary system commands on the target server through server-side...

N/A N/A PACKETSTORM
NONE PACKETSTORM:213264

📄 Backdoor.Win32.Poison.jh MVID-2025-0704 Insecure Permissions_PACKETSTORM:213264

Backdoor.Win32.Poison.jh malware creates the directory 28463 under C:\Windows\SysWOW64, granting Full F permissions to the Everyone user group. Thi...

N/A N/A PACKETSTORM
NONE PACKETSTORM:213269

📄 PKP-WAL 3.5.0-1 Cross Site Request Forgery_PACKETSTORM:213269

PKP-WAL versions 3.5.0-1 and below suffer from a cross site request forgery vulnerability...

N/A N/A PACKETSTORM
NONE PACKETSTORM:213263

📄 Backdoor.Win32.Netbus.170 MVID-2025-0703 Insecure Credential Storage_PACKETSTORM:213263

Backdoor.Win32.Netbus.170 malware listens on TCP ports 12632 and 12631. The backdoor server password "ecoli" is stored in cleartext in an .INI text...

N/A N/A PACKETSTORM
HIGH 7.8 PACKETSTORM:213198

📄 Adobe DNG SDK 1.5 Web Upload Integer Overflow_PACKETSTORM:213198

Adobe DNG SDK versions 1.5 through 1.7.0 can have an integer overflow triggered via a web upload. If the backend processes the uploaded file with a...

N/A N/A PACKETSTORM
HIGH 7.1 PACKETSTORM:213203

📄 Adobe DNG SDK Missing Validation Heap Buffer Overflow_PACKETSTORM:213203

A heap buffer overflow vulnerability exists in Adobe's DNG SDK versions 1.7.1 and below due to improper handling of raw images with two color plane...

N/A N/A PACKETSTORM