Vulnerabilities > Critical

DATE CVE VULNERABILITY TITLE RISK
2025-05-26 CVE-2025-5205 SQL Injection vulnerability in 1000Projects Daily College Class Work Report Book 1.0
A vulnerability classified as critical has been found in 1000 Projects Daily College Class Work Report Book 1.0.
network
low complexity
1000projects CWE-89
critical
9.8
2025-05-26 CVE-2025-5178 Unrestricted Upload of File with Dangerous Type vulnerability in Realcetecnologia Queue Ticket Kiosk
A vulnerability classified as critical has been found in Realce Tecnologia Queue Ticket Kiosk up to 20250517.
network
low complexity
realcetecnologia CWE-434
critical
9.8
2025-05-26 CVE-2025-5176 Injection vulnerability in Realcetecnologia Queue Ticket Kiosk
A vulnerability was found in Realce Tecnologia Queue Ticket Kiosk up to 20250517.
network
low complexity
realcetecnologia CWE-74
critical
9.1
2025-05-26 CVE-2025-5171 Unrestricted Upload of File with Dangerous Type vulnerability in Llisoft MTA Maita Training System 4.5
A vulnerability, which was classified as critical, has been found in llisoft MTA Maita Training System 4.5.
network
low complexity
llisoft CWE-434
critical
9.8
2025-05-26 CVE-2025-5172 Injection vulnerability in Econtrata
A vulnerability, which was classified as critical, was found in Econtrata up to 20250516.
network
low complexity
econtrata CWE-74
critical
9.8
2025-05-26 CVE-2025-5170 Injection vulnerability in Llisoft MTA Maita Training System 4.5
A vulnerability classified as critical was found in llisoft MTA Maita Training System 4.5.
network
low complexity
llisoft CWE-74
critical
9.8
2025-05-26 CVE-2025-5162 Unrestricted Upload of File with Dangerous Type vulnerability in H3C Seccenter Smp-1114P02
A vulnerability, which was classified as critical, has been found in H3C SecCenter SMP-E1114P02 up to 20250513.
network
low complexity
h3c CWE-434
critical
9.8
2025-05-26 CVE-2025-2146 Out-of-bounds Write vulnerability in Canon products
Buffer overflow in WebService Authentication processing of Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute arbitrary code.
network
low complexity
canon CWE-787
critical
9.8
2025-05-25 CVE-2025-5156 A vulnerability was found in H3C GR-5400AX up to 100R008 and classified as critical.
network
low complexity
CWE-120
critical
9.8
2025-05-24 CVE-2025-4603 The eMagicOne Store Manager for WooCommerce plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the delete_file() function in all versions up to, and including, 1.2.5.
network
low complexity
CWE-73
critical
9.1