Vulnerabilities > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-11-24 CVE-2024-53910 Deserialization of Untrusted Data vulnerability in Veritas Enterprise Vault
An issue was discovered in the server in Veritas Enterprise Vault before 15.2, ZDI-CAN-24336.
network
low complexity
veritas CWE-502
critical
9.8
2024-11-24 CVE-2024-53911 Deserialization of Untrusted Data vulnerability in Veritas Enterprise Vault
An issue was discovered in the server in Veritas Enterprise Vault before 15.2, ZDI-CAN-24339.
network
low complexity
veritas CWE-502
critical
9.8
2024-11-24 CVE-2024-53912 Deserialization of Untrusted Data vulnerability in Veritas Enterprise Vault
An issue was discovered in the server in Veritas Enterprise Vault before 15.2, ZDI-CAN-24341.
network
low complexity
veritas CWE-502
critical
9.8
2024-11-24 CVE-2024-53914 Deserialization of Untrusted Data vulnerability in Veritas Enterprise Vault
An issue was discovered in the server in Veritas Enterprise Vault before 15.2, ZDI-CAN-24344.
network
low complexity
veritas CWE-502
critical
9.8
2024-11-24 CVE-2024-53915 Deserialization of Untrusted Data vulnerability in Veritas Enterprise Vault
An issue was discovered in the server in Veritas Enterprise Vault before 15.2, ZDI-CAN-24405.
network
low complexity
veritas CWE-502
critical
9.8
2024-11-24 CVE-2024-53913 Deserialization of Untrusted Data vulnerability in Veritas Enterprise Vault
An issue was discovered in the server in Veritas Enterprise Vault before 15.2, ZDI-CAN-24343.
network
low complexity
veritas CWE-502
critical
9.8
2024-11-24 CVE-2024-53899 Command Injection vulnerability in Virtualenv
virtualenv before 20.26.6 allows command injection through the activation scripts for a virtual environment.
network
low complexity
virtualenv CWE-77
critical
9.8
2024-11-24 CVE-2024-11236 Integer Overflow or Wraparound vulnerability in PHP
In PHP versions 8.1.* before 8.1.31, 8.2.* before 8.2.26, 8.3.* before 8.3.14, uncontrolled long string inputs to ldap_escape() function on 32-bit systems can cause an integer overflow, resulting in an out-of-bounds write.
network
low complexity
php CWE-190
critical
9.8
2024-11-23 CVE-2024-11632 SQL Injection vulnerability in Fabianros Simple CAR Rental System 1.0
A vulnerability was found in code-projects Simple Car Rental System 1.0.
network
low complexity
fabianros CWE-89
critical
9.8
2024-11-23 CVE-2023-7299 SQL Injection vulnerability in Datagear
A vulnerability was found in DataGear up to 4.60.
network
low complexity
datagear CWE-89
critical
9.8