Vulnerabilities > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-02-02 CVE-2020-29504 Improper Certificate Validation vulnerability in Dell products
Dell BSAFE Crypto-C Micro Edition, versions before 4.1.5, and Dell BSAFE Micro Edition Suite, versions before 4.5.2, contain a Missing Required Cryptographic Step Vulnerability.
network
low complexity
dell CWE-295
critical
9.8
2024-02-02 CVE-2021-21575 Information Exposure Through Discrepancy vulnerability in Dell Bsafe Micro-Edition-Suite
Dell BSAFE Micro Edition Suite, versions before 4.5.2, contain an Observable Timing Discrepancy Vulnerability.
network
low complexity
dell CWE-203
critical
9.8
2024-02-02 CVE-2022-34381 Unspecified vulnerability in Dell Bsafe Crypto-J and Bsafe Ssl-J
Dell BSAFE SSL-J version 7.0 and all versions prior to 6.5, and Dell BSAFE Crypto-J versions prior to 6.2.6.1 contain an unmaintained third-party component vulnerability.
network
low complexity
dell
critical
9.8
2024-02-02 CVE-2023-39303 Unspecified vulnerability in Qnap Qts, Quts Hero and Qutscloud
An improper authentication vulnerability has been reported to affect several QNAP operating system versions.
network
low complexity
qnap
critical
9.8
2024-02-02 CVE-2023-45025 Unspecified vulnerability in Qnap Qts, Quts Hero and Qutscloud
An OS command injection vulnerability has been reported to affect several QNAP operating system versions.
network
low complexity
qnap
critical
9.8
2024-02-02 CVE-2024-22108 SQL Injection vulnerability in Gttb GTB Central Console 15.17.130814.Ng
An issue was discovered in GTB Central Console 15.17.1-30814.NG.
network
low complexity
gttb CWE-89
critical
9.8
2024-02-02 CVE-2024-24029 SQL Injection vulnerability in Jfinalcms Project Jfinalcms 5.0.0
JFinalCMS 5.0.0 is vulnerable to SQL injection via /admin/content/data.
network
low complexity
jfinalcms-project CWE-89
critical
9.8
2024-02-02 CVE-2024-24757 Unspecified vulnerability in Degamisu Open-Irs
open-irs is an issue response robot that reponds to issues in the installed repository.
network
low complexity
degamisu
critical
9.8
2024-02-02 CVE-2023-47143 Improper Encoding or Escaping of Output vulnerability in IBM Tivoli Application Dependency Discovery Manager
IBM Tivoli Application Dependency Discovery Manager 7.3.0.0 through 7.3.0.10 is vulnerable to HTTP header injection, caused by improper validation of input by the HOST headers.
network
low complexity
ibm CWE-116
critical
9.8
2024-02-02 CVE-2023-50488 Code Injection vulnerability in Blurams Lumi Security Camera A31C Firmware 23.0406.435.412
An issue in Blurams Lumi Security Camera (A31C) v23.0406.435.4120 allows attackers to execute arbitrary code.
network
low complexity
blurams CWE-94
critical
9.8