Vulnerabilities > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-11-26 CVE-2018-11922 Wrong configuration in Touch Pal application can collect user behavior data without awareness by the user.
network
low complexity
CWE-16
critical
9.8
2024-11-25 CVE-2024-11663 SQL Injection vulnerability in Codezips E-Commerce Site 1.0
A vulnerability classified as critical was found in Codezips E-Commerce Site 1.0.
network
low complexity
codezips CWE-89
critical
9.8
2024-11-25 CVE-2024-11664 Unspecified vulnerability in Enms
A vulnerability, which was classified as critical, has been found in eNMS up to 4.2.
network
low complexity
enms
critical
9.8
2024-11-25 CVE-2024-11661 Unrestricted Upload of File with Dangerous Type vulnerability in Codezips Free Exam Hall Seating Management System 1.0
A vulnerability was found in Codezips Free Exam Hall Seating Management System 1.0.
network
low complexity
codezips CWE-434
critical
9.8
2024-11-25 CVE-2024-11649 SQL Injection vulnerability in 1000Projects Beauty Parlour Management System 1.0
A vulnerability has been found in 1000 Projects Beauty Parlour Management System 1.0 and classified as critical.
network
low complexity
1000projects CWE-89
critical
9.8
2024-11-25 CVE-2024-11647 SQL Injection vulnerability in 1000Projects Beauty Parlour Management System 1.0
A vulnerability, which was classified as critical, has been found in 1000 Projects Beauty Parlour Management System 1.0.
network
low complexity
1000projects CWE-89
critical
9.8
2024-11-25 CVE-2024-11648 SQL Injection vulnerability in 1000Projects Beauty Parlour Management System 1.0
A vulnerability, which was classified as critical, was found in 1000 Projects Beauty Parlour Management System 1.0.
network
low complexity
1000projects CWE-89
critical
9.8
2024-11-25 CVE-2024-11646 SQL Injection vulnerability in 1000Projects Beauty Parlour Management System 1.0
A vulnerability classified as critical was found in 1000 Projects Beauty Parlour Management System 1.0.
network
low complexity
1000projects CWE-89
critical
9.8
2024-11-24 CVE-2024-11666 Insufficient Verification of Data Authenticity vulnerability in Echarge Salia Plcc Firmware
Affected devices beacon to eCharge cloud infrastructure asking if there are any command they should run.
network
low complexity
echarge CWE-345
critical
9.8
2024-11-24 CVE-2024-53909 Deserialization of Untrusted Data vulnerability in Veritas Enterprise Vault
An issue was discovered in the server in Veritas Enterprise Vault before 15.2, ZDI-CAN-24334.
network
low complexity
veritas CWE-502
critical
9.8