2022 Annual Metasploit Wrap-Up

It's been another gangbusters year for Metasploit, and the holidays are a time to g ...
Continue Reading
December 30, 2022
OpenTSDB 2.4.0 Command Injection Exploit
This Metasploit module exploits an unauthenticated command injection vulnerability in the yrange parameter in OpenTSDB through 2.4.0 (CVE-2020-35476) in order to achieve unauthenticated remote code ex ...
Continue Reading
December 24, 2022
Exploit for Improper Privilege Management in Dolibarr Dolibarr Erp/Crm
# CVE-2022-43138
Dolibarr Open Source ERP & CRM for Business be...Read More ...
Continue Reading
December 23, 2022
Exploit for Improper Authentication in Atlassian Crowd
# CVE-2022-43782
Affected versions of Atlassian Crowd allow an ...Read More ...
Continue Reading
December 23, 2022
Exploit for Out-of-bounds Read in Teluu Pjsip
# CVE-2021-43302
Read out-of-bounds in PJSUA API when calling p...Read More ...
Continue Reading
December 23, 2022
Critical Photon OS Security Update – PHSA-2022-0507
Updates of ['linux', 'linux-aws', 'linux-secure', 'linux-esx', 'linux-rt'] packages of Photon OS have been released.Read More ...
Continue Reading
December 23, 2022
Exploit for Improper Authentication in Kubeview Project Kubeview
# CVE-2022-45933
KubeView through 0.1.31 allows attackers to ob...Read More ...
Continue Reading
December 23, 2022
Exploit for Cross-Site Request Forgery (CSRF) in Tailscale
# CVE-2022-41924
A vulnerability identified in the Tailscale Wi...Read More ...
Continue Reading
December 23, 2022