Vulnerabilities > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-06-13 CVE-2024-38294 Unspecified vulnerability in Alcasar
ALCASAR before 3.6.1 allows email_registration_back.php remote code execution.
network
low complexity
alcasar
critical
9.8
2024-06-13 CVE-2024-38295 Unspecified vulnerability in Alcasar
ALCASAR before 3.6.1 allows still_connected.php remote code execution.
network
low complexity
alcasar
critical
9.8
2024-06-13 CVE-2024-3922 SQL Injection vulnerability in Dokan PRO Plugin 3.10.3
The Dokan Pro plugin for WordPress is vulnerable to SQL Injection via the 'code' parameter in all versions up to, and including, 3.10.3 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query.
network
low complexity
dokan CWE-89
critical
9.8
2024-06-12 CVE-2024-37036 Unspecified vulnerability in Schneider-Electric Sage RTU Firmware
CWE-787: Out-of-bounds Write vulnerability exists that could result in an authentication bypass when sending a malformed POST request and particular configuration parameters are set.
network
low complexity
schneider-electric
critical
9.8
2024-06-12 CVE-2024-5898 Unspecified vulnerability in Angeljudesuarez Payroll Management System 1.0
A vulnerability was found in itsourcecode Payroll Management System 1.0 and classified as critical.
network
low complexity
angeljudesuarez
critical
9.8
2024-06-12 CVE-2024-36761 Out-of-bounds Write vulnerability in Gfx-Rs Naga 0.14.0
naga v0.14.0 was discovered to contain a stack overflow via the component /wgsl/parse/mod.rs.
network
low complexity
gfx-rs CWE-787
critical
9.8
2024-06-12 CVE-2024-5896 Unspecified vulnerability in Oretnom23 Employee and Visitor Gate Pass Logging System 1.0
A vulnerability, which was classified as critical, was found in SourceCodester Employee and Visitor Gate Pass Logging System 1.0.
network
low complexity
oretnom23
critical
9.8
2024-06-12 CVE-2024-36265 Unspecified vulnerability in Apache Submarine 0.8.0
** UNSUPPORTED WHEN ASSIGNED ** Incorrect Authorization vulnerability in Apache Submarine Server Core. This issue affects Apache Submarine Server Core: from 0.8.0. As this project is retired, we do not plan to release a version that fixes this issue.
network
low complexity
apache
critical
9.8
2024-06-12 CVE-2024-5893 Unspecified vulnerability in Oretnom23 CAB Management System 1.0
A vulnerability classified as critical has been found in SourceCodester Cab Management System 1.0.
network
low complexity
oretnom23
critical
9.8
2024-06-12 CVE-2024-5894 Unspecified vulnerability in Oretnom23 Online Eyewear Shop 1.0
A vulnerability classified as critical was found in SourceCodester Online Eyewear Shop 1.0.
network
low complexity
oretnom23
critical
9.8