Vulnerabilities > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-11-29 CVE-2024-49805 IBM Security Verify Access Appliance 10.0.0 through 10.0.8 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data.
network
low complexity
CWE-798
critical
9.4
2024-11-29 CVE-2024-49806 IBM Security Verify Access Appliance 10.0.0 through 10.0.8 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data.
network
low complexity
CWE-798
critical
9.4
2024-11-28 CVE-2024-11970 SQL Injection vulnerability in Anisha Concert Ticket Ordering System 1.0
A vulnerability classified as critical has been found in code-projects Concert Ticket Ordering System 1.0.
network
low complexity
anisha CWE-89
critical
9.8
2024-11-28 CVE-2024-11966 SQL Injection vulnerability in PHPgurukul Complaint Management System 1.0
A vulnerability was found in PHPGurukul Complaint Management system 1.0 and classified as critical.
network
low complexity
phpgurukul CWE-89
critical
9.8
2024-11-28 CVE-2024-11967 SQL Injection vulnerability in PHPgurukul Complaint Management System 1.0
A vulnerability was found in PHPGurukul Complaint Management system 1.0.
network
low complexity
phpgurukul CWE-89
critical
9.8
2024-11-28 CVE-2024-11964 SQL Injection vulnerability in PHPgurukul Complaint Management System 1.0
A vulnerability, which was classified as critical, was found in PHPGurukul Complaint Management system 1.0.
network
low complexity
phpgurukul CWE-89
critical
9.8
2024-11-28 CVE-2024-11965 SQL Injection vulnerability in PHPgurukul Complaint Management System 1.0
A vulnerability has been found in PHPGurukul Complaint Management system 1.0 and classified as critical.
network
low complexity
phpgurukul CWE-89
critical
9.8
2024-11-28 CVE-2024-11962 SQL Injection vulnerability in Fabianros Simple CAR Rental System 1.0
A vulnerability classified as critical was found in code-projects Simple Car Rental System 1.0.
network
low complexity
fabianros CWE-89
critical
9.8
2024-11-27 CVE-2024-11667 Path Traversal vulnerability in Zyxel ZLD
A directory traversal vulnerability in the web management interface of Zyxel ATP series firmware versions V5.00 through V5.38, USG FLEX series firmware versions V5.00 through V5.38, USG FLEX 50(W) series firmware versions V5.10 through V5.38, and USG20(W)-VPN series firmware versions V5.10 through V5.38 could allow an attacker to download or upload files via a crafted URL.
network
low complexity
zyxel CWE-22
critical
9.8
2024-11-27 CVE-2024-53676 Path Traversal vulnerability in HPE Insight Remote Support 7.12/7.12.0.529/7.12.0.545
A directory traversal vulnerability in Hewlett Packard Enterprise Insight Remote Support may allow remote code execution.
network
low complexity
hpe CWE-22
critical
9.8