Vulnerabilities > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-08-12 CVE-2024-7642 SQL Injection vulnerability in Mayurik Advocate Office Management System 1.0
A vulnerability has been found in SourceCodester Kortex Lite Advocate Office Management System 1.0 and classified as critical.
network
low complexity
mayurik CWE-89
critical
9.8
2024-08-12 CVE-2024-7643 SQL Injection vulnerability in Rems Leads Manager Tool 1.0
A vulnerability was found in SourceCodester Leads Manager Tool 1.0 and classified as critical.
network
low complexity
rems CWE-89
critical
9.8
2024-08-12 CVE-2024-7680 SQL Injection vulnerability in Angeljudesuarez Tailoring Management System 1.0
A vulnerability was found in itsourcecode Tailoring Management System 1.0.
network
low complexity
angeljudesuarez CWE-89
critical
9.8
2024-08-12 CVE-2024-7681 SQL Injection vulnerability in College Management System Project College Management System 1.0
A vulnerability was found in code-projects College Management System 1.0.
network
low complexity
college-management-system-project CWE-89
critical
9.8
2024-08-12 CVE-2024-7682 SQL Injection vulnerability in Fabianros JOB Portal 1.0
A vulnerability was found in code-projects Job Portal 1.0.
network
low complexity
fabianros CWE-89
critical
9.8
2024-08-08 CVE-2024-41161 Use of Hard-coded Credentials vulnerability in Vonets products
Use of hard-coded credentials vulnerability affecting Vonets industrial wifi bridge relays and WiFi bridge repeaters, software versions 3.3.23.6.9 and prior, enables an unauthenticated remote attacker to bypass authentication using hard-coded administrator credentials.
network
low complexity
vonets CWE-798
critical
9.8
2024-08-08 CVE-2024-42366 Cross-site Scripting vulnerability in Vrcx-Team Vrcx
VRCX is an assistant/companion application for VRChat.
network
low complexity
vrcx-team CWE-79
critical
9.0
2024-08-08 CVE-2024-42355 Code Injection vulnerability in Shopware
Shopware, an open ecommerce platform, has a new Twig Tag `sw_silent_feature_call` which silences deprecation messages while triggered in this tag.
network
low complexity
shopware CWE-94
critical
9.8
2024-08-08 CVE-2024-42357 SQL Injection vulnerability in Shopware
Shopware is an open commerce platform.
network
low complexity
shopware CWE-89
critical
9.8
2024-08-08 CVE-2024-7490 Classic Buffer Overflow vulnerability in Microchip Advanced Software Framework
Improper Input Validation vulnerability in Microchip Techology Advanced Software Framework example DHCP server can cause remote code execution through a buffer overflow. This vulnerability is associated with program files tinydhcpserver.C and program routines lwip_dhcp_find_option. This issue affects Advanced Software Framework: through 3.52.0.2574. ASF is no longer being supported.
network
low complexity
microchip CWE-120
critical
9.8