Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 5.3 PACKETSTORM:218662

📄 WordPress EventPrime 4.2.8.1 Arbitrary File Upload_PACKETSTORM:218662

WordPress EventPrime plugin versions 4.2.8.1 and below suffer from an unauthenticated arbitrary file upload vulnerability...

N/A N/A PACKETSTORM
HIGH 7 PACKETSTORM:218671

📄 Microsoft MMC MSC EvilTwin Local Admin Creation_PACKETSTORM:218671

Microsoft MMC MSC EvilTwin local admin creation exploit...

N/A N/A PACKETSTORM
CRITICAL 10 PACKETSTORM:218661

📄 React Server 19.2.0 Remote Code Execution_PACKETSTORM:218661

React Server versions 19.0.0, 19.1.0, 19.1.1, and 19.2.0 proof of concept remote code execution exploit...

N/A N/A PACKETSTORM
MEDIUM 6.4 PACKETSTORM:218667

📄 WordPress Contact List 3.0.17 Cross Site Scripting_PACKETSTORM:218667

WordPress Contact List plugin versions 3.0.17 and below suffer from a persistent cross site scripting vulnerability...

N/A N/A PACKETSTORM
HIGH 8.1 PACKETSTORM:218672

📄 WordPress Tutor LMS 3.9.5 Insecure Direct Object Reference_PACKETSTORM:218672

WordPress Tutor LMS plugin versions 3.9.5 and below suffer from broken access control and insecure direct object reference vulnerabilities...

N/A N/A PACKETSTORM
HIGH 8.8 PACKETSTORM:218663

📄 XiboCMS 3.3.4 Traversal / Code Execution_PACKETSTORM:218663

XiboCMS version 3.3.4 zip slip exploit that leverages path traversal and arbitrary file upload vulnerabilities to achieve code execution...

N/A N/A PACKETSTORM
CRITICAL 9.8 PACKETSTORM:218680

📄 SQLite 3.50.1 Heap Overflow_PACKETSTORM:218680

SQLite version 3.50.1 proof of concept that triggers a heap overflow in winsqlite3.dll via excessive aggregate functions...

N/A N/A PACKETSTORM
HIGH 7.3 PACKETSTORM:218685

📄 NetBT e-Fatura 2024 Unquoted Service Path_PACKETSTORM:218685

NetBT e-Fatura 2024 suffers from an unquoted service path vulnerability...

N/A N/A PACKETSTORM
MEDIUM 6.5 PACKETSTORM:218678

📄 MyRewards 5.6.0 Missing Authorization_PACKETSTORM:218678

MyRewards – Loyalty Points and Rewards for WooCommerce versions 5.6.0 and below suffer from a missing authorization vulnerability that allows for p...

N/A N/A PACKETSTORM
HIGH 7.6 PACKETSTORM:218681

📄 RomM Cross Site Scripting / File Upload_PACKETSTORM:218681

RomM versions prior to 4.4.1 chained vulnerabilities exploit that leverages file upload to achieve cross site scripting that then leverages csrf to...

N/A N/A PACKETSTORM