ZeroHour

Vulnerabilities

9 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2026-33277
+1 in the same advisory: …33566
An OS command Injection issue exists in LogonTracer prior to v2.0.0.

An OS command Injection issue exists in LogonTracer prior to v2.0.0. An arbitrary OS command may be executed by a logged-in user.

NVD description · AI analysis pending
8.7
group max
1%
  • jpcert logontracer
CVE-2026-28704
Emocheck insecurely loads Dynamic Link Libraries (DLLs).

Emocheck insecurely loads Dynamic Link Libraries (DLLs). If a crafted DLL file is placed to the same directory, an arbitrary code may be executed with the privilege of the user invoking EmoCheck.

NVD description · AI analysis pending
8.4<1%
  • jpcert emocheck
CVE-2023-38752
+1 in the same advisory: …38751
Improper authorization vulnerability in Special Interest Group Network for Analysis and Liaison versions 4.4.0 to 4.7.7 allows the authorized API users to view

Improper authorization vulnerability in Special Interest Group Network for Analysis and Liaison versions 4.4.0 to 4.7.7 allows the authorized API users to view the attribute information of the poster that is set as"non-disclosure" in the system settings.

NVD description · AI analysis pending
4.3<1%
  • jpcert special interest group network for analysis and liaison
CVE-2018-16167
+3 in the same advisory: …16168 …16166 …16165
LogonTracer 1.2.0 and earlier allows remote attackers to execute arbitrary OS commands via unspecified vectors.

LogonTracer 1.2.0 and earlier allows remote attackers to execute arbitrary OS commands via unspecified vectors.

NVD description · AI analysis pending
9.8
group max
75%
  • jpcert logontracer