2024 CVE Vulnerabilities

39,218 CVEs published in 2024.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2024-7569CRITICAL9.8An information disclosure vulnerability in Ivanti ITSM on-prem and Neurons for ITSM versions 2023.4 and earlier allows a...
CVE-2024-38199CRITICAL9.8Windows Line Printer Daemon (LPD) Service Remote Code Execution Vulnerability
CVE-2024-38160CRITICAL9.1Windows Network Virtualization Remote Code Execution Vulnerability
CVE-2024-38159CRITICAL9.1Windows Network Virtualization Remote Code Execution Vulnerability
CVE-2024-38140CRITICAL9.8Windows Reliable Multicast Transport Driver (RMCAST) Remote Code Execution Vulnerability
CVE-2024-38108CRITICAL9.3Azure Stack Hub Spoofing Vulnerability
CVE-2024-38063CRITICAL9.8Windows TCP/IP Remote Code Execution Vulnerability
CVE-2024-7746CRITICAL9.8Use of Default Credentials vulnerability in Tananaev Solutions Traccar Server on Administrator Panel modules allows Auth...
CVE-2024-6788CRITICAL9.8A remote unauthenticated attacker can use the firmware update feature on the LAN interface of the device to reset the pa...
CVE-2024-41623CRITICAL9.8An issue in D3D Security D3D IP Camera (D8801) v.V9.1.17.1.4-20180428 allows a local attacker to execute arbitrary code ...
CVE-2024-43160CRITICAL10Unrestricted Upload of File with Dangerous Type vulnerability in BerqWP allows Code Injection.This issue affects BerqWP:...
CVE-2024-43153CRITICAL9.8Incorrect Privilege Assignment vulnerability in WofficeIO Woffice woffice.This issue affects Woffice: from n/a through <...
CVE-2024-43141CRITICAL9.8Deserialization of Untrusted Data vulnerability in Roland Barker, xnau webdesign Participants Database allows Object Inj...
CVE-2024-39651CRITICAL9.3Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in WPWeb WooCommerce PDF Vo...
CVE-2024-41940CRITICAL9.1A vulnerability has been identified in SINEC NMS (All versions < V3.0). The affected application does not properly valid...
CVE-2024-41730CRITICAL9.8In SAP BusinessObjects Business Intelligence Platform, if Single Signed On is enabled on Enterprise authentication, an u...
CVE-2024-33003CRITICAL9.1Some OCC API endpoints in SAP Commerce Cloud allows Personally Identifiable Information (PII) data, such as passwords, e...
CVE-2024-7094CRITICAL9.8The JS Help Desk – The Ultimate Help Desk & Support Plugin plugin for WordPress is vulnerable to PHP Code Injection lead...
CVE-2024-7707CRITICAL9.8A vulnerability was found in Tenda FH1206 02.03.01.35 and classified as critical. Affected by this issue is the function...
CVE-2024-43360CRITICAL9.8ZoneMinder is a free, open source closed-circuit television software application. ZoneMinder is affected by a time-based...
CVE-2024-42547CRITICAL9.8TOTOLINK A3100R V4.1.2cu.5050_B20200504 has a buffer overflow vulnerability in the http_host parameter in the loginauth ...
CVE-2024-42546CRITICAL9.8TOTOLINK A3100R V4.1.2cu.5050_B20200504 has a buffer overflow vulnerability in the password parameter in the loginauth f...
CVE-2024-42545CRITICAL9.8TOTOLINK A3700R v9.1.2u.5822_B20200513 has a buffer overflow vulnerability in the ssid parameter in setWizardCfg functio...
CVE-2024-42543CRITICAL9.8TOTOLINK A3700R v9.1.2u.5822_B20200513 has a buffer overflow vulnerability in the http_host parameter in the loginauth f...
CVE-2024-42480CRITICAL9.9Kamaji is the Hosted Control Plane Manager for Kubernetes. In versions 1.0.0 and earlier, Kamaji uses an "open at the to...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now