VYPR

PoshC2

by LRQA Nettitude

CVEs (2)

  • CVE-2024-53303HigApr 16, 2025
    risk 0.57cvss 8.8epss 0.01

    A remote code execution (RCE) vulnerability in the upload_file function of LRQA Nettitude PoshC2 after commit 123db87 allows authenticated attackers to execute arbitrary code via a crafted POST request.

  • CVE-2024-53304MedApr 16, 2025
    risk 0.42cvss 6.5epss 0.00

    An issue in LRQA Nettitude PoshC2 after commit 09ee2cf allows unauthenticated attackers to connect to the C2 server and execute arbitrary commands via posing as an infected machine.