Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Carson Wang

Researcher fromTeamT5杜浦數位安全
#16590of 53,632
16.2Total CVSS
Vulnerabilities · 2
High
2
PT-2025-28118
9.0
2025-07-07
Unknown · Threatsonar Anti-Ransomware · CVE-2025-7145
Name of the Vulnerable Software and Affected Versions: ThreatSonar Anti-Ransomware (affected versions not specified) Description: The issue allows remote attackers with intermediate privileges to inject arbitrary OS commands and execute them on the server, gaining administrative access to the remote host. This is due to an OS Command Injection vulnerability in the product. Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2025-21888
7.2
2025-05-19
Unknown · Threatsonar Anti-Ransomware · CVE-2025-4477
Name of the Vulnerable Software and Affected Versions: ThreatSonar Anti-Ransomware versions up to 3.8.0 Description: The issue allows remote attackers with intermediate privileges to escalate their privileges to the highest administrator level through a specific API. This vulnerability affects the API authorization component. Recommendations: For versions up to 3.8.0, as a temporary workaround, consider restricting access to the vulnerable API endpoint until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.