CVEs

Common Vulnerabilities and Exposures (CVEs) discovered and responsibly disclosed as part of security research and penetration testing efforts.

[xbz0n@vulnerabilities]$ cat stats.txt
Total CVEs
10
Critical
5
High
4
Medium
1
Latest Discovery:CVE-2025-50674

CVE-2025-50674

9.8/10
CriticalPrivilege Escalation
Target: OpenMediaVault 7.4.17

Privilege escalation vulnerability in OpenMediaVault 7.4.17 allowing authenticated users to gain root access through password change function.

CVSS Score9.8/10
Discovered: 2025

CVE-2024-32136

8.5/10
HighSQL Injection
Target: Database Systems

A SQL injection vulnerability in database systems leading to unauthorized access.

CVSS Score8.5/10
Discovered: 2024

CVE-2023-0830

9.8/10
CriticalCommand Injection
Target: EasyNAS

Vulnerability in EasyNAS backup and restore script allowing arbitrary command execution with root privileges.

CVSS Score9.8/10
Discovered: 2023

CVE-2024-0365

7.8/10
HighPrivilege Escalation
Target: System Components

A security flaw in system components allowing privilege escalation.

CVSS Score7.8/10
Discovered: 2024

CVE-2024-0399

9.1/10
CriticalData Exposure
Target: Multiple Systems

A critical vulnerability affecting data integrity and confidentiality.

CVSS Score9.1/10
Discovered: 2024

CVE-2024-0405

9.8/10
CriticalRemote Code Execution
Target: Web Applications

An input validation vulnerability leading to remote code execution.

CVSS Score9.8/10
Discovered: 2024

CVE-2024-0566

8.6/10
HighSQL Injection
Target: Web Applications

A SQL injection vulnerability allowing data exfiltration in web applications.

CVSS Score8.6/10
Discovered: 2024

CVE-2024-30240

9.8/10
CriticalSQL Injection
Target: Authentication Systems

A critical SQL injection vulnerability allowing authentication bypass in systems.

CVSS Score9.8/10
Discovered: 2024

CVE-2024-31370

8.8/10
HighCode Injection
Target: Multiple Systems

An injection vulnerability allowing arbitrary code execution.

CVSS Score8.8/10
Discovered: 2024

CVE-2024-33911

6.5/10
MediumSecurity Misconfiguration
Target: System Configurations

A vulnerability affecting system configurations and security controls.

CVSS Score6.5/10
Discovered: 2024