Recent Advisories

Severity ID Title Vendor Product Date Type
NONE PACKETSTORM:213311

๐Ÿ“„ Backdoor.Win32.Netbus.170 Blind Command Execution_PACKETSTORM:213311

This Metasploit module provides historical/educational exploitation of the Backdoor.Win32.Netbus.170 trojan, originally discovered in 1998. It repr...

N/A N/A PACKETSTORM
MEDIUM 6.1 PACKETSTORM:213314

๐Ÿ“„ FuguHub 8.1 RSA Private Key Disclosure_PACKETSTORM:213314

A web-accessible documentation file in FuguHub version 8.1 was found to contain an embedded RSA private key paired with an X.509 certificate. The a...

N/A N/A PACKETSTORM
CRITICAL 9.1 PACKETSTORM:213296

๐Ÿ“„ Adobe Commerce Insecure Deserialization_PACKETSTORM:213296

This flaw in Magento 2 / Adobe Commerce 2.4.x enables remote attackers to manipulate internal session handling paths and abuse PHP object chains Gu...

N/A N/A PACKETSTORM
NONE PACKETSTORM:213292

๐Ÿ“„ LINQPad 5.48.00 Insecure Deserialization_PACKETSTORM:213292

LINQPad versions up to 5.48.00 contain an insecure deserialization vulnerability in the paid version of the software that allows attackers to achie...

N/A N/A PACKETSTORM
NONE PACKETSTORM:213291

๐Ÿ“„ Limesurvey 2.0 Arbitrary File Download_PACKETSTORM:213291

Limesurvey version 2.0 unauthenticated arbitrary file download proof of concept exploit...

N/A N/A PACKETSTORM
CRITICAL 9.8 PACKETSTORM:213297

๐Ÿ“„ MagnusBilling 6 Server-Side Request Forgery / Path Traversal_PACKETSTORM:213297

Proof of concept exploit for MagnusBilling 6 vulnerabilities including server-side request forgery, path traversal, and cryptographic weaknesses...

N/A N/A PACKETSTORM
HIGH 9.3 PACKETSTORM:213295

๐Ÿ“„ macOS 10.12.2 XNU Kernel Privilege Escalation_PACKETSTORM:213295

This proof of concept targets a raceโ€‘condition vulnerability in the XNU kernel affecting macOS/iOS. By forcing a useโ€‘afterโ€‘free condition on kernel...

N/A N/A PACKETSTORM
CRITICAL 9.8 PACKETSTORM:213294

๐Ÿ“„ Litespeed Cache 6.4.0.1 Privilege Escalation_PACKETSTORM:213294

WordPress Litespeed Cache plugin version 6.4.0.1 allows attackers to brute-force authentication hashes and create administrative users without any ...

N/A N/A PACKETSTORM
NONE PACKETSTORM:213289

๐Ÿ“„ HP ProCurve SNAC Domain Controller Shell Upload_PACKETSTORM:213289

This proof of concept exploits a PHP code injection vulnerability in the HP ProCurve SNAC Domain Controller...

N/A N/A PACKETSTORM
NONE PACKETSTORM:213290

๐Ÿ“„ Varnish / Styx HTTP Request Smuggling_PACKETSTORM:213290

Proof of concept exploit that demonstrates an HTTP request smuggling vulnerability between Varnish and Styx / Nginx...

N/A N/A PACKETSTORM