Vulnerabilities > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-08-07 CVE-2024-20450 Classic Buffer Overflow vulnerability in Cisco products
Multiple vulnerabilities in the web-based management interface of Cisco Small Business SPA300 Series IP Phones and Cisco Small Business SPA500 Series IP Phones could allow an unauthenticated, remote attacker to execute arbitrary commands on the underlying operating system with root privileges. These vulnerabilities exist because incoming HTTP packets are not properly checked for errors, which could result in a buffer overflow.
network
low complexity
cisco CWE-120
critical
9.8
2024-08-07 CVE-2024-20454 Classic Buffer Overflow vulnerability in Cisco products
Multiple vulnerabilities in the web-based management interface of Cisco Small Business SPA300 Series IP Phones and Cisco Small Business SPA500 Series IP Phones could allow an unauthenticated, remote attacker to execute arbitrary commands on the underlying operating system with root privileges. These vulnerabilities exist because incoming HTTP packets are not properly checked for errors, which could result in a buffer overflow.
network
low complexity
cisco CWE-120
critical
9.8
2024-08-07 CVE-2024-7584 Classic Buffer Overflow vulnerability in Tenda I22 Firmware 1.0.0.3(4687)
A vulnerability, which was classified as critical, was found in Tenda i22 1.0.0.3(4687).
network
low complexity
tenda CWE-120
critical
9.8
2024-08-07 CVE-2024-7585 Classic Buffer Overflow vulnerability in Tenda I22 Firmware 1.0.0.3(4687)
A vulnerability has been found in Tenda i22 1.0.0.3(4687) and classified as critical.
network
low complexity
tenda CWE-120
critical
9.8
2024-08-07 CVE-2024-34479 SQL Injection vulnerability in Oretnom23 Computer Laboratory Management System 1.0
SourceCodester Computer Laboratory Management System 1.0 allows classes/Master.php id SQL Injection.
network
low complexity
oretnom23 CWE-89
critical
9.8
2024-08-07 CVE-2024-34480 SQL Injection vulnerability in Oretnom23 Computer Laboratory Management System 1.0
SourceCodester Computer Laboratory Management System 1.0 allows admin/category/view_category.php id SQL Injection.
network
low complexity
oretnom23 CWE-89
critical
9.8
2024-08-07 CVE-2024-7582 Out-of-bounds Write vulnerability in Tenda I22 Firmware 1.0.0.3(4687)
A vulnerability classified as critical was found in Tenda i22 1.0.0.3(4687).
network
low complexity
tenda CWE-787
critical
9.8
2024-08-07 CVE-2024-7583 Out-of-bounds Write vulnerability in Tenda I22 Firmware 1.0.0.3(4687)
A vulnerability, which was classified as critical, has been found in Tenda i22 1.0.0.3(4687).
network
low complexity
tenda CWE-787
critical
9.8
2024-08-07 CVE-2024-7580 OS Command Injection vulnerability in Alientechnology Alr-F800 Firmware
A vulnerability was found in Alien Technology ALR-F800 up to 19.10.24.00.
network
low complexity
alientechnology CWE-78
critical
9.8
2024-08-07 CVE-2024-7581 Out-of-bounds Write vulnerability in Tendacn A301 Firmware 15.13.08.12
A vulnerability classified as critical has been found in Tenda A301 15.13.08.12.
network
low complexity
tendacn CWE-787
critical
9.8