Vulnerabilities > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-07-16 CVE-2024-40393 SQL Injection vulnerability in Angeljudesuarez Online Clinic Management System 1.0
Online Clinic Management System In PHP With Free Source code v1.0 was discovered to contain a SQL injection vulnerability via the user parameter at login.php.
network
low complexity
angeljudesuarez CWE-89
critical
9.8
2024-07-16 CVE-2024-22442 Unspecified vulnerability in HP 3Par Service Processor Firmware
The vulnerability could be remotely exploited to bypass authentication.
network
low complexity
hp
critical
9.8
2024-07-16 CVE-2024-33180 Out-of-bounds Write vulnerability in Tendacn Ac18 Firmware 15.03.3.10
Tenda AC18 V15.03.3.10_EN was discovered to contain a stack-based buffer overflow vulnerability via the deviceId parameter at ip/goform/saveParentControlInfo.
network
low complexity
tendacn CWE-787
critical
9.8
2024-07-16 CVE-2024-33182 Out-of-bounds Write vulnerability in Tendacn Ac18 Firmware 15.03.3.10
Tenda AC18 V15.03.3.10_EN was discovered to contain a stack-based buffer overflow vulnerability via the deviceId parameter at ip/goform/addWifiMacFilter.
network
low complexity
tendacn CWE-787
critical
9.8
2024-07-16 CVE-2024-35338 Use of Hard-coded Credentials vulnerability in Tendacn I29 Firmware 1.0.0.5
Tenda i29V1.0 V1.0.0.5 was discovered to contain a hardcoded password for root.
network
low complexity
tendacn CWE-798
critical
9.8
2024-07-15 CVE-2024-40415 Out-of-bounds Write vulnerability in Tenda Ax1806 Firmware 1.0.0.1
A vulnerability in /goform/SetStaticRouteCfg in the sub_519F4 function in Tenda AX1806 1.0.0.1 firmware leads to stack-based buffer overflow.
network
low complexity
tenda CWE-787
critical
9.8
2024-07-15 CVE-2024-40416 Out-of-bounds Write vulnerability in Tenda Ax1806 Firmware 1.0.0.1
A vulnerability in /goform/SetVirtualServerCfg in the sub_6320C function in Tenda AX1806 1.0.0.1 firmware leads to stack-based buffer overflow.
network
low complexity
tenda CWE-787
critical
9.8
2024-07-15 CVE-2024-40414 Out-of-bounds Write vulnerability in Tenda Ax1806 Firmware 1.0.0.1
A vulnerability in /goform/SetNetControlList in the sub_656BC function in Tenda AX1806 1.0.0.1 firmware leads to stack-based buffer overflow.
network
low complexity
tenda CWE-787
critical
9.8
2024-07-15 CVE-2024-6745 Unspecified vulnerability in Code-Projects Simple Ticket Booking 1.0
A vulnerability classified as critical has been found in code-projects Simple Ticket Booking 1.0.
network
low complexity
code-projects
critical
9.8
2024-07-15 CVE-2024-39736 Improper Encoding or Escaping of Output vulnerability in IBM Datacap and Datacap Navigator
IBM Datacap Navigator 9.1.5, 9.1.6, 9.1.7, 9.1.8, and 9.1.9 is vulnerable to HTTP header injection, caused by improper validation of input by the HOST headers.
network
low complexity
ibm CWE-116
critical
9.8