Vulnerabilities > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-08-15 CVE-2024-7831 Classic Buffer Overflow vulnerability in Dlink products
** UNSUPPORTED WHEN ASSIGNED ** A vulnerability has been found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340L, DNS-343, DNS-345, DNS-726-4, DNS-1100-4, DNS-1200-05 and DNS-1550-04 up to 20240814 and classified as critical.
network
low complexity
dlink CWE-120
critical
9.8
2024-08-15 CVE-2024-7811 SQL Injection vulnerability in Rems Daily Expenses Monitoring APP 1.0
A vulnerability classified as critical has been found in SourceCodester Daily Expenses Monitoring App 1.0.
network
low complexity
rems CWE-89
critical
9.8
2024-08-15 CVE-2024-7808 SQL Injection vulnerability in Fabianros JOB Portal 1.0
A vulnerability was found in code-projects Job Portal 1.0.
network
low complexity
fabianros CWE-89
critical
9.8
2024-08-15 CVE-2024-7797 SQL Injection vulnerability in Oretnom23 Simple Online Bidding System 1.0
A vulnerability was found in SourceCodester Simple Online Bidding System 1.0.
network
low complexity
oretnom23 CWE-89
critical
9.8
2024-08-15 CVE-2024-7798 SQL Injection vulnerability in Oretnom23 Simple Online Bidding System 1.0
A vulnerability was found in SourceCodester Simple Online Bidding System 1.0.
network
low complexity
oretnom23 CWE-89
critical
9.8
2024-08-14 CVE-2024-7794 SQL Injection vulnerability in Adrianmercurio Vehicle Management System 1.0
A vulnerability was found in itsourcecode Vehicle Management System 1.0.
network
low complexity
adrianmercurio CWE-89
critical
9.8
2024-08-14 CVE-2024-42360 Command Injection vulnerability in Wurmlab Sequenceserver
SequenceServer lets you rapidly set up a BLAST+ server with an intuitive user interface for personal or group use.
network
low complexity
wurmlab CWE-77
critical
9.8
2024-08-14 CVE-2024-5914 Command Injection vulnerability in Paloaltonetworks Cortex Xsoar Commonscripts
A command injection issue in Palo Alto Networks Cortex XSOAR CommonScripts Pack allows an unauthenticated attacker to execute arbitrary commands within the context of an integration container.
network
low complexity
paloaltonetworks CWE-77
critical
9.8
2024-08-14 CVE-2024-39397 Unrestricted Upload of File with Dangerous Type vulnerability in Adobe Commerce
Adobe Commerce versions 2.4.7-p1, 2.4.6-p6, 2.4.5-p8, 2.4.4-p9 and earlier are affected by an Unrestricted Upload of File with Dangerous Type vulnerability that could result in arbitrary code execution by an attacker.
network
high complexity
adobe CWE-434
critical
9.0
2024-08-14 CVE-2024-7731 SQL Injection vulnerability in Secom Dr.Id Access Control 3.3.2
Dr.ID Access Control System from SECOM does not properly validate a specific page parameter, allowing unauthenticated remote attackers to inject SQL commands to read, modify, and delete database contents.
network
low complexity
secom CWE-89
critical
9.8