Category: CVSS3 - CRITICAL
2022 Annual Metasploit Wrap-Up

![2022 Annual Metasploit Wrap-Up](https://blog.rapid7.com/content/images/2022/12/metasploit-haxmas-candy-canes.jpeg) It's been another gangbusters year for Metasploit, and the holidays are a time to g ...

Continue Reading
OpenTSDB 2.4.0 Command Injection Exploit

This Metasploit module exploits an unauthenticated command injection vulnerability in the yrange parameter in OpenTSDB through 2.4.0 (CVE-2020-35476) in order to achieve unauthenticated remote code ex ...

Continue Reading
Exploit for Improper Privilege Management in Dolibarr Dolibarr Erp/Crm

# CVE-2022-43138 Dolibarr Open Source ERP & CRM for Business be...Read More ...

Continue Reading
Exploit for Improper Authentication in Atlassian Crowd

# CVE-2022-43782 Affected versions of Atlassian Crowd allow an ...Read More ...

Continue Reading
Exploit for Out-of-bounds Read in Teluu Pjsip

# CVE-2021-43302 Read out-of-bounds in PJSUA API when calling p...Read More ...

Continue Reading
Critical Photon OS Security Update – PHSA-2022-0507

Updates of ['linux', 'linux-aws', 'linux-secure', 'linux-esx', 'linux-rt'] packages of Photon OS have been released.Read More ...

Continue Reading
OpenTSDB 2.4.0 Command Injection

Post ContentRead More ...

Continue Reading
Exploit for Improper Authentication in Kubeview Project Kubeview

# CVE-2022-45933 KubeView through 0.1.31 allows attackers to ob...Read More ...

Continue Reading
Exploit for Cross-Site Request Forgery (CSRF) in Tailscale

# CVE-2022-41924 A vulnerability identified in the Tailscale Wi...Read More ...

Continue Reading
Exploit for Improper Restriction of XML External Entity Reference in Wso2 Api Manager

# CVE-2021-42646 XML External Entity (XXE) vulnerability in the...Read More ...

Continue Reading
Load more