2024 CVE Vulnerabilities

39,243 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-5298HIGH8.8D-Link D-View queryDeviceCustomMonitorResult Exposed Dangerous Method Remote Code Execution Vulnerability. This vulnerab...
CVE-2024-5297HIGH8.8D-Link D-View executeWmicCmd Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote att...
CVE-2024-5296CRITICAL9.8D-Link D-View Use of Hard-coded Cryptographic Key Authentication Bypass Vulnerability. This vulnerability allows remote ...
CVE-2024-5295HIGH8.8D-Link G416 flupl self Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent...
CVE-2024-5294MEDIUM6.5D-Link DIR-3040 prog.cgi websSecurityHandler Memory Leak Denial-of-Service Vulnerability. This vulnerability allows netw...
CVE-2024-5293HIGH8.8D-Link DIR-2640 HTTP Referer Stack-Based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows ...
CVE-2024-5292HIGH7.8D-Link Network Assistant Uncontrolled Search Path Element Local Privilege Escalation Vulnerability. This vulnerability a...
CVE-2024-5291HIGH8.8D-Link DIR-2150 GetDeviceSettings Target Command Injection Remote Code Execution Vulnerability. This vulnerability allow...
CVE-2024-5247HIGH8.8NETGEAR ProSAFE Network Management System UpLoadServlet Unrestricted File Upload Remote Code Execution Vulnerability. Th...
CVE-2024-5246HIGH8.8NETGEAR ProSAFE Network Management System Tomcat Remote Code Execution Vulnerability. This vulnerability allows remote a...
CVE-2024-5245HIGH7.8NETGEAR ProSAFE Network Management System Default Credentials Local Privilege Escalation Vulnerability. This vulnerabili...
CVE-2024-5244MEDIUM4.2TP-Link Omada ER605 Reliance on Security Through Obscurity Vulnerability. This vulnerability allows network-adjacent att...
CVE-2024-5243HIGH7.5TP-Link Omada ER605 Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent atta...
CVE-2024-5242HIGH7.5TP-Link Omada ER605 Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-a...
CVE-2024-5228HIGH7.5TP-Link Omada ER605 Comexe DDNS Response Handling Heap-based Buffer Overflow Remote Code Execution Vulnerability. This ...
CVE-2024-5227HIGH7.5TP-Link Omada ER605 PPTP VPN username Command Injection Remote Code Execution Vulnerability. This vulnerability allows n...
CVE-2024-5202HIGH7.7Arbitrary File Read in OpenText Dimensions RM allows authenticated users to read files stored on the server via webservi...
CVE-2024-5201HIGH8.8Privilege Escalation in OpenText Dimensions RM allows an authenticated user to escalate there privilege to the privilege...
CVE-2024-35570CRITICAL9.8An arbitrary file upload vulnerability in the component \controller\ImageUploadController.class of inxedu v2.0.6 allows ...
CVE-2024-35375CRITICAL9.8There is an arbitrary file upload vulnerability on the media add .php page in the backend of the website in version 5.7....
CVE-2024-35080CRITICAL9.8An arbitrary file upload vulnerability in the gok4 method of inxedu v2024.4 allows attackers to execute arbitrary code v...
CVE-2024-35079CRITICAL9.8An arbitrary file upload vulnerability in the uploadAudio method of inxedu v2024.4 allows attackers to execute arbitrary...
CVE-2024-31843MEDIUM4.1An issue was discovered in Italtel Embrace 1.6.4. The Web application does not properly check the parameters sent as inp...
CVE-2024-5143MEDIUM6.8A user with device administrative privileges can change existing SMTP server settings on the device, without having to r...
CVE-2024-4365MEDIUM6.4The Advanced iFrame plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘add_iframe_url_as_param_d...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now