Vulnerabilities > Critical

DATE CVE VULNERABILITY TITLE RISK
2025-03-17 CVE-2025-2381 Injection vulnerability in PHPgurukul Curfew E-Pass Management System 1.0
A vulnerability classified as critical has been found in PHPGurukul Curfew e-Pass Management System 1.0.
network
low complexity
phpgurukul CWE-74
critical
9.8
2025-03-17 CVE-2025-2379 Injection vulnerability in PHPgurukul Apartment Visitors Management System 1.0
A vulnerability was found in PHPGurukul Apartment Visitors Management System 1.0.
network
low complexity
phpgurukul CWE-74
critical
9.8
2025-03-17 CVE-2025-2380 Injection vulnerability in PHPgurukul Apartment Visitors Management System 1.0
A vulnerability was found in PHPGurukul Apartment Visitors Management System 1.0.
network
low complexity
phpgurukul CWE-74
critical
9.8
2025-03-17 CVE-2025-2372 Injection vulnerability in PHPgurukul Human Metapneumovirus Testing Management System 1.0
A vulnerability classified as critical has been found in PHPGurukul Human Metapneumovirus Testing Management System 1.0.
network
low complexity
phpgurukul CWE-74
critical
9.8
2025-03-17 CVE-2025-2369 Stack-based Buffer Overflow vulnerability in Totolink Ex1800T Firmware 9.1.0Cu.2112B20220316
A vulnerability was found in TOTOLINK EX1800T up to 9.1.0cu.2112_B20220316.
network
low complexity
totolink CWE-121
critical
9.8
2025-03-17 CVE-2025-2370 Stack-based Buffer Overflow vulnerability in Totolink Ex1800T Firmware 9.1.0Cu.2112B20220316
A vulnerability was found in TOTOLINK EX1800T up to 9.1.0cu.2112_B20220316.
network
low complexity
totolink CWE-121
critical
9.8
2025-03-17 CVE-2025-2395 The U-Office Force from e-Excellence has an Improper Authentication vulnerability, allowing unauthenticated remote attackers to use a particular API and alter cookies to log in as an administrator.
network
low complexity
CWE-565
critical
9.8
2025-03-17 CVE-2025-2362 Injection vulnerability in PHPgurukul Pre-School Enrollment System 1.0
A vulnerability was found in PHPGurukul Pre-School Enrollment System 1.0.
network
low complexity
phpgurukul CWE-74
critical
9.8
2025-03-16 CVE-2025-2345 A vulnerability, which was classified as very critical, was found in IROAD Dash Cam X5 and Dash Cam X6 up to 20250308.
network
low complexity
CWE-266
critical
9.8
2025-03-15 CVE-2025-1771 PHP Remote File Inclusion vulnerability in Shinecommerce Traveler
The Traveler theme for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 3.1.8 via the 'hotel_alone_load_more_post' function 'style' parameter.
network
low complexity
shinecommerce CWE-98
critical
9.8