Vulnerabilities > Critical
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-07-16 | CVE-2024-40393 | SQL Injection vulnerability in Angeljudesuarez Online Clinic Management System 1.0 Online Clinic Management System In PHP With Free Source code v1.0 was discovered to contain a SQL injection vulnerability via the user parameter at login.php. | 9.8 |
2024-07-16 | CVE-2024-22442 | Unspecified vulnerability in HP 3Par Service Processor Firmware The vulnerability could be remotely exploited to bypass authentication. | 9.8 |
2024-07-16 | CVE-2024-33180 | Out-of-bounds Write vulnerability in Tendacn Ac18 Firmware 15.03.3.10 Tenda AC18 V15.03.3.10_EN was discovered to contain a stack-based buffer overflow vulnerability via the deviceId parameter at ip/goform/saveParentControlInfo. | 9.8 |
2024-07-16 | CVE-2024-33182 | Out-of-bounds Write vulnerability in Tendacn Ac18 Firmware 15.03.3.10 Tenda AC18 V15.03.3.10_EN was discovered to contain a stack-based buffer overflow vulnerability via the deviceId parameter at ip/goform/addWifiMacFilter. | 9.8 |
2024-07-16 | CVE-2024-35338 | Use of Hard-coded Credentials vulnerability in Tendacn I29 Firmware 1.0.0.5 Tenda i29V1.0 V1.0.0.5 was discovered to contain a hardcoded password for root. | 9.8 |
2024-07-15 | CVE-2024-40415 | Out-of-bounds Write vulnerability in Tenda Ax1806 Firmware 1.0.0.1 A vulnerability in /goform/SetStaticRouteCfg in the sub_519F4 function in Tenda AX1806 1.0.0.1 firmware leads to stack-based buffer overflow. | 9.8 |
2024-07-15 | CVE-2024-40416 | Out-of-bounds Write vulnerability in Tenda Ax1806 Firmware 1.0.0.1 A vulnerability in /goform/SetVirtualServerCfg in the sub_6320C function in Tenda AX1806 1.0.0.1 firmware leads to stack-based buffer overflow. | 9.8 |
2024-07-15 | CVE-2024-40414 | Out-of-bounds Write vulnerability in Tenda Ax1806 Firmware 1.0.0.1 A vulnerability in /goform/SetNetControlList in the sub_656BC function in Tenda AX1806 1.0.0.1 firmware leads to stack-based buffer overflow. | 9.8 |
2024-07-15 | CVE-2024-6745 | Unspecified vulnerability in Code-Projects Simple Ticket Booking 1.0 A vulnerability classified as critical has been found in code-projects Simple Ticket Booking 1.0. | 9.8 |
2024-07-15 | CVE-2024-39736 | Improper Encoding or Escaping of Output vulnerability in IBM Datacap and Datacap Navigator IBM Datacap Navigator 9.1.5, 9.1.6, 9.1.7, 9.1.8, and 9.1.9 is vulnerable to HTTP header injection, caused by improper validation of input by the HOST headers. | 9.8 |