2024 CVE Vulnerabilities
39,240 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-27174 | CRITICAL | 9.8 | 1.6% | Jun 14, 2024 | Remote Command program allows an attacker to get Remote Code Execution. This vulnerability can be executed in combinatio... |
| CVE-2024-27173 | CRITICAL | 9.8 | 3.2% | Jun 14, 2024 | Remote Command program allows an attacker to get Remote Code Execution by overwriting existing Python files containing e... |
| CVE-2024-27172 | CRITICAL | 9.8 | 26.8% | Jun 14, 2024 | Remote Command program allows an attacker to get Remote Code Execution. As for the affected products/models/versions, se... |
| CVE-2024-27171 | HIGH | 7.4 | 0.5% | Jun 14, 2024 | A remote attacker using the insecure upload functionality will be able to overwrite any Python file and get Remote Code ... |
| CVE-2024-27170 | HIGH | 7.4 | 0.3% | Jun 14, 2024 | It was observed that all the Toshiba printers contain credentials used for WebDAV access in the readable file. Then, it ... |
| CVE-2024-27169 | HIGH | 8.4 | 0.3% | Jun 14, 2024 | Toshiba printers provides API without authentication for internal access. A local attacker can bypass authentication in ... |
| CVE-2024-27168 | HIGH | 7.1 | 0.3% | Jun 14, 2024 | It appears that some hardcoded keys are used for authentication to internal API. Knowing these private keys may allow at... |
| CVE-2024-27167 | HIGH | 7.4 | 0.2% | Jun 14, 2024 | Toshiba printers use Sendmail to send emails to recipients. Sendmail is used with several insecure directories. A local ... |
| CVE-2024-27166 | HIGH | 7.4 | 0.2% | Jun 14, 2024 | Coredump binaries in Toshiba printers have incorrect permissions. A local attacker can steal confidential information. A... |
| CVE-2024-27165 | HIGH | 7.8 | 0.2% | Jun 14, 2024 | Toshiba printers contain a suidperl binary and it has a Local Privilege Escalation vulnerability. A local attacker can g... |
| CVE-2024-27164 | HIGH | 7.1 | 0.3% | Jun 14, 2024 | Toshiba printers contain hardcoded credentials. As for the affected products/models/versions, see the reference URL. |
| CVE-2024-27163 | MEDIUM | 6.5 | 0.4% | Jun 14, 2024 | Toshiba printers will display the password of the admin user in clear-text and additional passwords when sending 2 speci... |
| CVE-2024-27162 | MEDIUM | 6.1 | 21.2% | Jun 14, 2024 | Toshiba printers provide a web interface that will load the JavaScript file. The file contains insecure codes vulnerable... |
| CVE-2024-27161 | MEDIUM | 6.2 | 0.2% | Jun 14, 2024 | all the Toshiba printers have programs containing a hardcoded key used to encrypt files. An attacker can decrypt the enc... |
| CVE-2024-27160 | MEDIUM | 6.2 | 0.2% | Jun 14, 2024 | All the Toshiba printers contain a shell script using the same hardcoded key to encrypt logs. An attacker can decrypt th... |
| CVE-2024-27159 | MEDIUM | 6.2 | 0.3% | Jun 14, 2024 | All the Toshiba printers contain a shell script using the same hardcoded key to encrypt logs. An attacker can decrypt th... |
| CVE-2024-27158 | HIGH | 7.4 | 0.3% | Jun 14, 2024 | All the Toshiba printers share the same hardcoded root password. As for the affected products/models/versions, see the r... |
| CVE-2024-27157 | MEDIUM | 6.8 | 0.4% | Jun 14, 2024 | The sessions are stored in clear-text logs. An attacker can retrieve authentication sessions. A remote attacker can retr... |
| CVE-2024-27156 | MEDIUM | 6.8 | 0.4% | Jun 14, 2024 | The session cookies, used for authentication, are stored in clear-text logs. An attacker can retrieve authentication ses... |
| CVE-2024-27155 | HIGH | 7.7 | 0.4% | Jun 14, 2024 | The Toshiba printers are vulnerable to a Local Privilege Escalation vulnerability. An attacker can remotely compromise a... |
| CVE-2024-0892 | MEDIUM | 4.3 | 0.3% | Jun 14, 2024 | The Schema App Structured Data plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, a... |
| CVE-2024-3080 | CRITICAL | 9.8 | 41.6% | Jun 14, 2024 | Certain ASUS router models have authentication bypass vulnerability, allowing unauthenticated remote attackers to log in... |
| CVE-2024-3079 | HIGH | 7.2 | 0.8% | Jun 14, 2024 | Certain models of ASUS routers have buffer overflow vulnerabilities, allowing remote attackers with administrative privi... |
| CVE-2024-27154 | MEDIUM | 6.2 | 0.3% | Jun 14, 2024 | Passwords are stored in clear-text logs. An attacker can retrieve passwords. As for the affected products/models/version... |
| CVE-2024-27153 | HIGH | 7.4 | 0.2% | Jun 14, 2024 | The Toshiba printers are vulnerable to a Local Privilege Escalation vulnerability. An attacker can remotely compromise a... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now