Vulnerabilities > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-08-26 CVE-2024-44563 Out-of-bounds Write vulnerability in Tenda Ax1806 Firmware 1.0.0.1
Tenda AX1806 v1.0.0.1 contains a stack overflow via the iptv.stb.port parameter in the function setIptvInfo.
network
low complexity
tenda CWE-787
critical
9.8
2024-08-26 CVE-2024-44565 Out-of-bounds Write vulnerability in Tenda Ax1806 Firmware 1.0.0.1
Tenda AX1806 v1.0.0.1 contains a stack overflow via the serverName parameter in the function form_fast_setting_internet_set.
network
low complexity
tenda CWE-787
critical
9.8
2024-08-26 CVE-2024-8073 Command Injection vulnerability in Hillstonenet web Application Firewall 5.5R62.6.7/5.5R62.8.13
Improper Input Validation vulnerability in Hillstone Networks Hillstone Networks Web Application Firewall on 5.5R6 allows Command Injection.This issue affects Hillstone Networks Web Application Firewall: from 5.5R6-2.6.7 through 5.5R6-2.8.13.
network
low complexity
hillstonenet CWE-77
critical
9.8
2024-08-25 CVE-2024-8146 SQL Injection vulnerability in Pharmacy Management System Project Pharmacy Management System 1.0
A vulnerability has been found in code-projects Pharmacy Management System 1.0 and classified as critical.
network
low complexity
pharmacy-management-system-project CWE-89
critical
9.8
2024-08-25 CVE-2024-8138 SQL Injection vulnerability in Pharmacy Management System Project Pharmacy Management System 1.0
A vulnerability, which was classified as critical, was found in code-projects Pharmacy Management System 1.0.
network
low complexity
pharmacy-management-system-project CWE-89
critical
9.8
2024-08-25 CVE-2024-8139 SQL Injection vulnerability in Angeljudesuarez E-Commerce Website 1.0
A vulnerability has been found in itsourcecode E-Commerce Website 1.0 and classified as critical.
network
low complexity
angeljudesuarez CWE-89
critical
9.8
2024-08-24 CVE-2024-45237 Classic Buffer Overflow vulnerability in Nicmx Fort-Validator
An issue was discovered in Fort before 1.6.3.
network
low complexity
nicmx CWE-120
critical
9.8
2024-08-24 CVE-2024-8135 Use of Hard-coded Credentials vulnerability in Gotribe
A vulnerability classified as critical has been found in Go-Tribe gotribe up to cd3ccd32cd77852c9ea73f986eaf8c301cfb6310.
network
low complexity
gotribe CWE-798
critical
9.8
2024-08-24 CVE-2024-8134 OS Command Injection vulnerability in Dlink products
A vulnerability was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340L, DNS-343, DNS-345, DNS-726-4, DNS-1100-4, DNS-1200-05 and DNS-1550-04 up to 20240814.
network
low complexity
dlink CWE-78
critical
9.8
2024-08-24 CVE-2024-8133 OS Command Injection vulnerability in Dlink products
A vulnerability was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340L, DNS-343, DNS-345, DNS-726-4, DNS-1100-4, DNS-1200-05 and DNS-1550-04 up to 20240814.
network
low complexity
dlink CWE-78
critical
9.8