Vulnerabilities > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-08-29 CVE-2024-45233 Unspecified vulnerability in In2Code Powermail
An issue was discovered in powermail extension through 12.3.5 for TYPO3.
network
low complexity
in2code
critical
9.8
2024-08-28 CVE-2024-34195 Out-of-bounds Write vulnerability in Totolink A3002R Firmware 1.1.1B20200824
TOTOLINK AC1200 Wireless Router A3002R Firmware V1.1.1-B20200824 is vulnerable to Buffer Overflow.
network
low complexity
totolink CWE-787
critical
9.8
2024-08-28 CVE-2024-44761 Path Traversal vulnerability in Gzequan EQ Enterprise Management System
An issue in EQ Enterprise Management System before v2.0.0 allows attackers to execute a directory traversal via crafted requests.
network
low complexity
gzequan CWE-22
critical
9.8
2024-08-28 CVE-2023-26321 Path Traversal vulnerability in MI File Manager 1210567
A path traversal vulnerability exists in the Xiaomi File Manager application product(international version).
network
low complexity
mi CWE-22
critical
9.8
2024-08-28 CVE-2023-26322 Unspecified vulnerability in MI Getapps
A code execution vulnerability exists in the XiaomiGetApps application product.
network
low complexity
mi
critical
9.8
2024-08-28 CVE-2023-26323 Unspecified vulnerability in MI APP Market
A code execution vulnerability exists in the Xiaomi App market product.
network
low complexity
mi
critical
9.8
2024-08-28 CVE-2023-26324 Unspecified vulnerability in MI Getapps
A code execution vulnerability exists in the XiaomiGetApps application product.
network
low complexity
mi
critical
9.8
2024-08-28 CVE-2021-22530 Improper Restriction of Excessive Authentication Attempts vulnerability in Microfocus Netiq Advanced Authentication
A vulnerability identified in NetIQ Advance Authentication that doesn't enforce account lockout when brute force attack is performed on API based login.
network
low complexity
microfocus CWE-307
critical
9.9
2024-08-28 CVE-2024-8030 The Ultimate Store Kit Elementor Addons, Woocommerce Builder, EDD Builder, Elementor Store Builder, Product Grid, Product Table, Woocommerce Slider plugin is vulnerable to PHP Object Injection via deserialization of untrusted input via the _ultimate_store_kit_wishlist cookie in versions up to , and including, 2.0.3.
network
low complexity
critical
9.8
2024-08-28 CVE-2024-8230 Out-of-bounds Write vulnerability in Tenda O6 Firmware 1.0.0.7(2054)
A vulnerability was found in Tenda O6 1.0.0.7(2054).
network
low complexity
tenda CWE-787
critical
9.8