Vulnerabilities > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-07-31 CVE-2024-6980 Server-Side Request Forgery (SSRF) vulnerability in Bitdefender Gravityzone
A verbose error handling issue in the proxy service implemented in the GravityZone Update Server allows an attacker to cause a server-side request forgery. This issue only affects GravityZone Console versions before 6.38.1-5 running only on premise.
network
low complexity
bitdefender CWE-918
critical
9.8
2024-07-31 CVE-2024-39950 Unspecified vulnerability in Dahuasecurity products
A vulnerability has been found in Dahua products.
network
low complexity
dahuasecurity
critical
9.8
2024-07-31 CVE-2024-7286 SQL Injection vulnerability in Oretnom23 Establishment Billing Management System 1.0
A vulnerability was found in SourceCodester Establishment Billing Management System 1.0 and classified as critical.
network
low complexity
oretnom23 CWE-89
critical
9.8
2024-07-31 CVE-2024-7281 SQL Injection vulnerability in Oretnom23 LOT Reservation Management System 1.0
A vulnerability classified as critical has been found in SourceCodester Lot Reservation Management System 1.0.
network
low complexity
oretnom23 CWE-89
critical
9.8
2024-07-31 CVE-2024-7282 SQL Injection vulnerability in Oretnom23 LOT Reservation Management System 1.0
A vulnerability classified as critical was found in SourceCodester Lot Reservation Management System 1.0.
network
low complexity
oretnom23 CWE-89
critical
9.8
2024-07-31 CVE-2024-6255 Unspecified vulnerability in Gaizhenbiao Chuanhuchatgpt 20240410
A vulnerability in the JSON file handling of gaizhenbiao/chuanhuchatgpt version 20240410 allows any user to delete any JSON file on the server, including critical configuration files such as `config.json` and `ds_config_chatbot.json`.
network
low complexity
gaizhenbiao
critical
9.1
2024-07-31 CVE-2024-7279 SQL Injection vulnerability in Oretnom23 LOT Reservation Management System 1.0
A vulnerability was found in SourceCodester Lot Reservation Management System 1.0.
network
low complexity
oretnom23 CWE-89
critical
9.8
2024-07-31 CVE-2024-7280 SQL Injection vulnerability in Oretnom23 LOT Reservation Management System 1.0
A vulnerability was found in SourceCodester Lot Reservation Management System 1.0.
network
low complexity
oretnom23 CWE-89
critical
9.8
2024-07-30 CVE-2024-38983 Unspecified vulnerability in Alykoshin Mini-Deep-Assign 0.0.8
Prototype Pollution in alykoshin mini-deep-assign v0.0.8 allows an attacker to execute arbitrary code or cause a Denial of Service (DoS) and cause other impacts via the _assign() method at (/lib/index.js:91)
network
low complexity
alykoshin
critical
9.8
2024-07-30 CVE-2024-7273 Unspecified vulnerability in Adonesevangelista Restaurant Management System 1.0
A vulnerability classified as critical was found in itsourcecode Alton Management System 1.0.
network
low complexity
adonesevangelista
critical
9.8