Recent Advisories

Severity ID Title Vendor Product Date Type
CRITICAL 9.3 PACKETSTORM:212150

📄 Monsta FTP DownloadFile Remote Code Execution_PACKETSTORM:212150

This Metasploit module exploits a pre-authenticated remote code execution vulnerability in Monsta FTP versions prior to 2.11.3. The vulnerability e...

N/A N/A PACKETSTORM
CRITICAL 9.8 PACKETSTORM:212155

📄 FortiWeb 8.0.1 Authentication Bypass_PACKETSTORM:212155

A critical authentication bypass vulnerability exists in FortiWeb web application firewalls that allows unauthenticated attackers to create adminis...

N/A N/A PACKETSTORM
CRITICAL 10 PACKETSTORM:212107

📄 vBulletin 6.0.3 replaceAdTemplate Expression Injection_PACKETSTORM:212107

Proof of concept exploit for vBulletin versions 5.0.0 through 6.0.3 for the replaceAdTemplate expression injection vulnerability...

N/A N/A PACKETSTORM
HIGH 8.6 PACKETSTORM:212109

📄 YesWiki Directory Traversal_PACKETSTORM:212109

YesWiki versions prior to 4.5.2 are vulnerable to an unauthenticated path traversal vulnerability through the squelette parameter. A remote attacke...

N/A N/A PACKETSTORM
CRITICAL 10 PACKETSTORM:212106

📄 Craft CMS 5.0 Authentication Session Path Exposure_PACKETSTORM:212106

Proof of concept exploit that demonstrates an authentication session path exposure vulnerability in Craft CMS version 5.0...

N/A N/A PACKETSTORM
CRITICAL 9.8 PACKETSTORM:212098

📄 Fortinet FortiWeb Unauthenticated Remote Code Execution_PACKETSTORM:212098

This Metasploit module exploits an authentication bypass via a path traversal vulnerability in the Fortinet FortiWeb management interface to create...

N/A N/A PACKETSTORM
NONE PACKETSTORM:212108

📄 Zimbra Collaboration Suite Postjournal 8.8.15 Remote Code Execution_PACKETSTORM:212108

Zimbra Collaboration Suite Postjournal version 8.8.15 unauthenticated proof of concept remote code execution exploit that leverages SMTP injection...

N/A N/A PACKETSTORM
NONE PACKETSTORM:212099

📄 IGEL OS Privilege Escalation_PACKETSTORM:212099

This Metasploit module escalates privileges for IGEL OS Workspace Edition sessions by modifying network-manager.service using setupcmd SUID and net...

N/A N/A PACKETSTORM
CRITICAL 10 PACKETSTORM:212102

📄 Apache Tomcat 11.0.3 Remote Session Injection_PACKETSTORM:212102

A vulnerability in Apache Tomcat version 11.0.3 allows attackers to upload a .session file containing a malicious Java serialized payload and then ...

N/A N/A PACKETSTORM
CRITICAL 10 PACKETSTORM:212105

📄 Confluence 8.x Privilege Escalation_PACKETSTORM:212105

Metasploit module proof of concept exploit that demonstrates an authentication bypass vulnerability Confluence version 8.x...

N/A N/A PACKETSTORM