Vulnerabilities > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-09-10 CVE-2024-38225 Unspecified vulnerability in Microsoft Dynamics 365 Business Central 2023/2024
Microsoft Dynamics 365 Business Central Elevation of Privilege Vulnerability
network
low complexity
microsoft
critical
9.8
2024-09-10 CVE-2024-38240 Unspecified vulnerability in Microsoft products
Windows Remote Access Connection Manager Elevation of Privilege Vulnerability
network
low complexity
microsoft
critical
9.8
2024-09-10 CVE-2024-43455 Unspecified vulnerability in Microsoft products
Windows Remote Desktop Licensing Service Spoofing Vulnerability
network
low complexity
microsoft
critical
9.8
2024-09-10 CVE-2024-43491 Unspecified vulnerability in Microsoft Windows 10 1507
Microsoft is aware of a vulnerability in Servicing Stack that has rolled back the fixes for some vulnerabilities affecting Optional Components on Windows 10, version 1507 (initial version released July 2015).
network
low complexity
microsoft
critical
9.8
2024-09-10 CVE-2023-36103 Command Injection vulnerability in Tenda Ac15 Firmware 15.03.05.20
Command Injection vulnerability in goform/SetIPTVCfg interface of Tenda AC15 V15.03.05.20 allows remote attackers to run arbitrary commands via crafted POST request.
network
low complexity
tenda CWE-77
critical
9.8
2024-09-10 CVE-2023-37234 Unspecified vulnerability in Loftware Spectrum
Loftware Spectrum through 4.6 has unprotected JMX Registry.
network
low complexity
loftware
critical
9.8
2024-09-10 CVE-2024-44677 Server-Side Request Forgery (SSRF) vulnerability in Eladmin 2.7
eladmin v2.7 and before is vulnerable to Server-Side Request Forgery (SSRF) which allows an attacker to execute arbitrary code via the DatabaseController.java component.
network
low complexity
eladmin CWE-918
critical
9.8
2024-09-10 CVE-2024-45595 Unspecified vulnerability in MAN D-Tale
D-Tale is a visualizer for Pandas data structures.
network
low complexity
man
critical
9.8
2024-09-10 CVE-2024-37995 Unspecified vulnerability in Siemens products
A vulnerability has been identified in SIMATIC Reader RF610R CMIIT (6GT2811-6BC10-2AA0) (All versions < V4.2), SIMATIC Reader RF610R ETSI (6GT2811-6BC10-0AA0) (All versions < V4.2), SIMATIC Reader RF610R FCC (6GT2811-6BC10-1AA0) (All versions < V4.2), SIMATIC Reader RF615R CMIIT (6GT2811-6CC10-2AA0) (All versions < V4.2), SIMATIC Reader RF615R ETSI (6GT2811-6CC10-0AA0) (All versions < V4.2), SIMATIC Reader RF615R FCC (6GT2811-6CC10-1AA0) (All versions < V4.2), SIMATIC Reader RF650R ARIB (6GT2811-6AB20-4AA0) (All versions < V4.2), SIMATIC Reader RF650R CMIIT (6GT2811-6AB20-2AA0) (All versions < V4.2), SIMATIC Reader RF650R ETSI (6GT2811-6AB20-0AA0) (All versions < V4.2), SIMATIC Reader RF650R FCC (6GT2811-6AB20-1AA0) (All versions < V4.2), SIMATIC Reader RF680R ARIB (6GT2811-6AA10-4AA0) (All versions < V4.2), SIMATIC Reader RF680R CMIIT (6GT2811-6AA10-2AA0) (All versions < V4.2), SIMATIC Reader RF680R ETSI (6GT2811-6AA10-0AA0) (All versions < V4.2), SIMATIC Reader RF680R FCC (6GT2811-6AA10-1AA0) (All versions < V4.2), SIMATIC Reader RF685R ARIB (6GT2811-6CA10-4AA0) (All versions < V4.2), SIMATIC Reader RF685R CMIIT (6GT2811-6CA10-2AA0) (All versions < V4.2), SIMATIC Reader RF685R ETSI (6GT2811-6CA10-0AA0) (All versions < V4.2), SIMATIC Reader RF685R FCC (6GT2811-6CA10-1AA0) (All versions < V4.2), SIMATIC RF1140R (6GT2831-6CB00) (All versions < V1.1), SIMATIC RF1170R (6GT2831-6BB00) (All versions < V1.1), SIMATIC RF166C (6GT2002-0EE20) (All versions < V2.2), SIMATIC RF185C (6GT2002-0JE10) (All versions < V2.2), SIMATIC RF186C (6GT2002-0JE20) (All versions < V2.2), SIMATIC RF186CI (6GT2002-0JE50) (All versions < V2.2), SIMATIC RF188C (6GT2002-0JE40) (All versions < V2.2), SIMATIC RF188CI (6GT2002-0JE60) (All versions < V2.2), SIMATIC RF360R (6GT2801-5BA30) (All versions < V2.2).
network
low complexity
siemens
critical
9.1
2024-09-10 CVE-2024-39581 Files or Directories Accessible to External Parties vulnerability in Dell Insightiq 5.0.1/5.1.0
Dell PowerScale InsightIQ, versions 5.0 through 5.1, contains a File or Directories Accessible to External Parties vulnerability.
network
low complexity
dell CWE-552
critical
9.8