ZeroHour

Vulnerabilities

13 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2025-55462
A CORS misconfiguration in Eramba Community and Enterprise Editions v3.26.0 allows an attacker-controlled Origin header to be reflected in the Access-Control-Al

A CORS misconfiguration in Eramba Community and Enterprise Editions v3.26.0 allows an attacker-controlled Origin header to be reflected in the Access-Control-Allow-Origin response along with Access-Control-Allow-Credentials: true. This permits malicious third-party websites to perform authenticated cross-origin requests against the Eramba API, including endpoints like /system-api/login and /system-api/user/me. The response includes sensitive user session data (ID, name, email, access groups), which is accessible to the attacker's JavaScript. This flaw enables full session hijack and data exfiltration without user interaction. Eramba versions 3.23.3 and earlier were tested and appear unaffected. The vulnerability is present in default installations, requiring no custom configuration.

NVD description · AI analysis pending
6.5<1%
  • eramba eramba
CVE-2023-36255
An issue in Eramba Limited Eramba Enterprise and Community edition v.3.19.1 allows a remote attacker to execute arbitrary code via the path parameter in the URL

An issue in Eramba Limited Eramba Enterprise and Community edition v.3.19.1 allows a remote attacker to execute arbitrary code via the path parameter in the URL.

NVD description · AI analysis pending
8.853% PoC
  • eramba eramba
CVE-2023-27643
An issue found in POWERAMP 925-bundle-play and Poweramp 954-uni allows a remote attacker to cause a denial of service via the Rescan button in Queue and Select

An issue found in POWERAMP 925-bundle-play and Poweramp 954-uni allows a remote attacker to cause a denial of service via the Rescan button in Queue and Select Folders button in Library

NVD description · AI analysis pending
7.51% PoC
  • powerampapp poweramp
CVE-2023-27645
An issue found in POWERAMP audioplayer build 925 bundle play and build 954 allows a remote attacker to gain privileges via the reverb and EQ preset parameters.

An issue found in POWERAMP audioplayer build 925 bundle play and build 954 allows a remote attacker to gain privileges via the reverb and EQ preset parameters.

NVD description · AI analysis pending
9.81% PoC
  • powerampapp poweramp
CVE-2022-43342
A stored cross-site scripting (XSS) vulnerability in the Add function of Eramba GRC Software c2.8.1 allows attackers to execute arbitrary web scripts or HTML vi

A stored cross-site scripting (XSS) vulnerability in the Add function of Eramba GRC Software c2.8.1 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the KPI Title text field.

NVD description · AI analysis pending
5.4<1% PoC
  • eramba eramba
CVE-2020-24038
myFax version 229 logs sensitive information in the export log module which allows any user to access critical information.

myFax version 229 logs sensitive information in the export log module which allows any user to access critical information.

NVD description · AI analysis pending
6.51% PoC
  • eram myfax150 firmware
  • eram myfax250 firmware
  • eram myfax450 firmware
CVE-2020-28031
eramba through c2.8.1 allows HTTP Host header injection with (for example) resultant wkhtml2pdf PDF printing by authenticated users.

eramba through c2.8.1 allows HTTP Host header injection with (for example) resultant wkhtml2pdf PDF printing by authenticated users.

NVD description · AI analysis pending
4.3<1%
  • eramba eramba
CVE-2020-25105
+1 in the same advisory: …25104
eramba c2.8.1 and Enterprise before e2.19.3 has a weak password recovery token (createHash has only a million possibilities).

eramba c2.8.1 and Enterprise before e2.19.3 has a weak password recovery token (createHash has only a million possibilities).

NVD description · AI analysis pending
9.8
group max
1%
  • eramba eramba
CVE-2018-7996
+2 in the same advisory: …7894 …7997
Eramba e1.0.6.033 has Stored XSS on the tooltip box via the /programScopes description parameter.

Eramba e1.0.6.033 has Stored XSS on the tooltip box via the /programScopes description parameter.

NVD description · AI analysis pending
6.1<1% PoC
  • eramba eramba
CVE-2018-7741
Eramba e1.0.6.033 has Reflected XSS in the Date Filter via the created parameter to the /crons URI.

Eramba e1.0.6.033 has Reflected XSS in the Date Filter via the created parameter to the /crons URI.

NVD description · AI analysis pending
6.1<1% PoC
  • eramba eramba