Vulnerabilities > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-07-17 CVE-2024-36491 OS Command Injection vulnerability in Centurysys products
FutureNet NXR series, VXR series and WXR series provided by Century Systems Co., Ltd.
network
low complexity
centurysys CWE-78
critical
9.8
2024-07-17 CVE-2024-6808 Unspecified vulnerability in Code-Projects Simple Task List 1.0
A vulnerability was found in itsourcecode Simple Task List 1.0.
network
low complexity
code-projects
critical
9.8
2024-07-17 CVE-2024-6803 Unspecified vulnerability in Document Management System Project Document Management System 1.0
A vulnerability has been found in itsourcecode Document Management System 1.0 and classified as critical.
network
low complexity
document-management-system-project
critical
9.8
2024-07-17 CVE-2024-6801 Unspecified vulnerability in Online Student Management System Project Online Student Management System 1.0
A vulnerability, which was classified as critical, has been found in SourceCodester Online Student Management System 1.0.
network
low complexity
online-student-management-system-project
critical
9.8
2024-07-17 CVE-2024-6802 Unspecified vulnerability in Computer Laboratory Management System Project Computer Laboratory Management System 1.0
A vulnerability, which was classified as critical, was found in SourceCodester Computer Laboratory Management System 1.0.
network
low complexity
computer-laboratory-management-system-project
critical
9.8
2024-07-16 CVE-2019-25154 Unspecified vulnerability in Google Chrome
Inappropriate implementation in iframe in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page.
network
low complexity
google
critical
9.6
2024-07-16 CVE-2023-4860 Unspecified vulnerability in Google Chrome
Inappropriate implementation in Skia in Google Chrome prior to 115.0.5790.98 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.
network
low complexity
google
critical
9.6
2024-07-16 CVE-2023-7012 Unspecified vulnerability in Google Chrome
Insufficient data validation in Permission Prompts in Google Chrome prior to 117.0.5938.62 allowed an attacker who convinced a user to install a malicious app to potentially perform a sandbox escape via a malicious file.
network
low complexity
google
critical
9.6
2024-07-16 CVE-2024-6779 Out-of-bounds Write vulnerability in Google Chrome
Out of bounds memory access in V8 in Google Chrome prior to 126.0.6478.182 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page.
network
low complexity
google CWE-787
critical
9.6
2024-07-16 CVE-2024-40129 Out-of-bounds Write vulnerability in Open5Gs 2.6.4
Open5GS v2.6.4 is vulnerable to Buffer Overflow.
network
low complexity
open5gs CWE-787
critical
9.8