CVE-2026-43643
- EPSS 0.62%
- Veröffentlicht 22.09.2026 17:54:55
- Zuletzt bearbeitet 22.09.2026 20:43:58
Softaculous Virtualizor before 3.2.9 (Patch 9) and 3.0.0 contains an authorization bypass vulnerability in the billing module handler that allows unauthenticated remote attackers to modify any tenant's account balance by supplying crafted act and fro...
CVE-2026-43642
- EPSS 0.96%
- Veröffentlicht 22.09.2026 17:53:04
- Zuletzt bearbeitet 26.09.2026 00:16:34
Softaculous Virtualizor before 3.2.9 (Patch 9) and 3.0.0 contains a PHP object injection vulnerability in the billing module handler that allows unauthenticated remote attackers to supply arbitrary serialized PHP objects for deserialization by settin...
CVE-2026-43641
- EPSS 3.03%
- Veröffentlicht 22.09.2026 17:51:13
- Zuletzt bearbeitet 23.09.2026 16:16:43
Softaculous Virtualizor before 3.2.9 (Patch 9) and 3.0.0 contains an OS command injection vulnerability in the billing module handler that allows unauthenticated remote attackers to execute arbitrary commands as root by bypassing authentication throu...