Vulnerabilities > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-03-31 CVE-2023-46808 Unrestricted Upload of File with Dangerous Type vulnerability in Ivanti Neurons for Itsm
An file upload vulnerability in Ivanti ITSM before 2023.4, allows an authenticated remote user to perform file writes to the server.
network
low complexity
ivanti CWE-434
critical
9.9
2024-03-29 CVE-2024-3094 Unspecified vulnerability in Tukaani XZ 5.6.0/5.6.1
Malicious code was discovered in the upstream tarballs of xz, starting with version 5.6.0.
network
low complexity
tukaani
critical
10.0
2024-03-29 CVE-2024-23538 Unspecified vulnerability in Apache Fineract
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Apache Fineract.This issue affects Apache Fineract: <1.8.5. Users are recommended to upgrade to version 1.8.5 or 1.9.0, which fix the issue.
network
low complexity
apache
critical
9.8
2024-03-29 CVE-2024-23539 Unspecified vulnerability in Apache Fineract
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Apache Fineract.This issue affects Apache Fineract: <1.8.5. Users are recommended to upgrade to version 1.8.5 or 1.9.0, which fix the issue.
network
low complexity
apache
critical
9.8
2024-03-29 CVE-2024-29201 Code Injection vulnerability in Fit2Cloud Jumpserver
JumpServer is an open source bastion host and an operation and maintenance security audit system.
network
low complexity
fit2cloud CWE-94
critical
9.9
2024-03-29 CVE-2024-29202 Code Injection vulnerability in Fit2Cloud Jumpserver
JumpServer is an open source bastion host and an operation and maintenance security audit system.
network
low complexity
fit2cloud CWE-94
critical
9.9
2024-03-24 CVE-2024-2856 Unspecified vulnerability in Tenda Ac10 Firmware 16.03.10.13/16.03.10.20
A vulnerability, which was classified as critical, has been found in Tenda AC10 16.03.10.13/16.03.10.20.
network
low complexity
tenda
critical
9.8
2024-03-24 CVE-2024-2854 Unspecified vulnerability in Tenda Ac18 Firmware 15.03.05.05
A vulnerability classified as critical has been found in Tenda AC18 15.03.05.05.
network
low complexity
tenda
critical
9.8
2024-03-24 CVE-2024-2855 Unspecified vulnerability in Tenda Ac15 Firmware 15.03.05.18/15.03.05.19/15.03.20Multi
A vulnerability classified as critical was found in Tenda AC15 15.03.05.18/15.03.05.19/15.03.20.
network
low complexity
tenda
critical
9.8
2024-03-24 CVE-2024-2852 Unspecified vulnerability in Tenda Ac15 Firmware 15.03.20Multi
A vulnerability was found in Tenda AC15 15.03.20_multi.
network
low complexity
tenda
critical
9.8