ZeroHour

Vulnerabilities

6 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2025-25873
Cross Site Request Forgery vulnerability in Open Panel OpenAdmin v.0.3.4 allows a remote attacker to escalate privileges via the Change Root Password function

Cross Site Request Forgery vulnerability in Open Panel OpenAdmin v.0.3.4 allows a remote attacker to escalate privileges via the Change Root Password function

NVD description · AI analysis pending
5.5<1% PoC
  • openpanel openadmin
CVE-2025-25871
+1 in the same advisory: …25872
An issue in Open Panel v.0.3.4 allows a remote attacker to escalate privileges via the Fix Permissions function

An issue in Open Panel v.0.3.4 allows a remote attacker to escalate privileges via the Fix Permissions function

NVD description · AI analysis pending
8.0
group max
<1% PoC
  • openpanel openpanel
CVE-2024-53584
+2 in the same advisory: …53537 …53582
OpenPanel v0.3.4 was discovered to contain an OS command injection vulnerability via the timezone parameter.

OpenPanel v0.3.4 was discovered to contain an OS command injection vulnerability via the timezone parameter.

NVD description · AI analysis pending
9.8
group max
4% PoC
  • openpanel openpanel