Recent Advisories

Severity ID Title Vendor Product Date Type
CRITICAL 10 PACKETSTORM:212107

📄 vBulletin 6.0.3 replaceAdTemplate Expression Injection_PACKETSTORM:212107

Proof of concept exploit for vBulletin versions 5.0.0 through 6.0.3 for the replaceAdTemplate expression injection vulnerability...

N/A N/A PACKETSTORM
HIGH 8.6 PACKETSTORM:212109

📄 YesWiki Directory Traversal_PACKETSTORM:212109

YesWiki versions prior to 4.5.2 are vulnerable to an unauthenticated path traversal vulnerability through the squelette parameter. A remote attacke...

N/A N/A PACKETSTORM
CRITICAL 10 PACKETSTORM:212106

📄 Craft CMS 5.0 Authentication Session Path Exposure_PACKETSTORM:212106

Proof of concept exploit that demonstrates an authentication session path exposure vulnerability in Craft CMS version 5.0...

N/A N/A PACKETSTORM
CRITICAL 9.8 PACKETSTORM:212098

📄 Fortinet FortiWeb Unauthenticated Remote Code Execution_PACKETSTORM:212098

This Metasploit module exploits an authentication bypass via a path traversal vulnerability in the Fortinet FortiWeb management interface to create...

N/A N/A PACKETSTORM
NONE PACKETSTORM:212108

📄 Zimbra Collaboration Suite Postjournal 8.8.15 Remote Code Execution_PACKETSTORM:212108

Zimbra Collaboration Suite Postjournal version 8.8.15 unauthenticated proof of concept remote code execution exploit that leverages SMTP injection...

N/A N/A PACKETSTORM
NONE PACKETSTORM:212099

📄 IGEL OS Privilege Escalation_PACKETSTORM:212099

This Metasploit module escalates privileges for IGEL OS Workspace Edition sessions by modifying network-manager.service using setupcmd SUID and net...

N/A N/A PACKETSTORM
CRITICAL 10 PACKETSTORM:212102

📄 Apache Tomcat 11.0.3 Remote Session Injection_PACKETSTORM:212102

A vulnerability in Apache Tomcat version 11.0.3 allows attackers to upload a .session file containing a malicious Java serialized payload and then ...

N/A N/A PACKETSTORM
CRITICAL 10 PACKETSTORM:212105

📄 Confluence 8.x Privilege Escalation_PACKETSTORM:212105

Metasploit module proof of concept exploit that demonstrates an authentication bypass vulnerability Confluence version 8.x...

N/A N/A PACKETSTORM
CRITICAL 9.8 PACKETSTORM:212103

📄 CAREL Boss / Boss Mini 1.4.0 Path Traversal_PACKETSTORM:212103

Proof of concept for an older vulnerability in 2023 where CAREL Boss and Boss Mini version 1.4.0 suffer from a path traversal vulnerability...

N/A N/A PACKETSTORM
CRITICAL 9.8 PACKETSTORM:212111

📄 Microsoft Sharepoint Authentication Bypass_PACKETSTORM:212111

This is a proof of concept exploit for a Microsoft Sharepoint authentication bypass vulnerability discovered in 2023...

N/A N/A PACKETSTORM