2024 CVE Vulnerabilities
39,218 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-10256 | HIGH | 7.1 | 0.2% | Dec 10, 2024 | Insufficient permissions in Ivanti Patch SDK before version 9.7.703 allows a local authenticated attacker to delete arbi... |
| CVE-2024-53247 | HIGH | 8.8 | 1.1% | Dec 10, 2024 | In Splunk Enterprise versions below 9.3.2, 9.2.4, and 9.1.7, and versions below 3.4.261 and 3.7.13 of the Splunk Secure ... |
| CVE-2024-53246 | HIGH | 7.5 | 0.3% | Dec 10, 2024 | In Splunk Enterprise versions below 9.3.2, 9.2.4, and 9.1.7 and Splunk Cloud Platform versions below 9.3.2408.101, 9.2.2... |
| CVE-2024-55602 | HIGH | 8.5 | 0.7% | Dec 10, 2024 | PwnDoc is a penetration test report generator. Prior to commit 1d4219c596f4f518798492e48386a20c6e9a2fe6, an authenticate... |
| CVE-2024-55548 | HIGH | 7.5 | 0.5% | Dec 10, 2024 | Improper check of password character lenght in ORing IAP-420 allows a forced deadlock. This issue affects IAP-420: throu... |
| CVE-2024-55544 | HIGH | 8.8 | 11.7% | Dec 10, 2024 | Missing input validation in the ORing IAP-420 web-interface allows authenticated Command Injections on OS level.This iss... |
| CVE-2024-10496 | HIGH | 7.8 | 0.2% | Dec 10, 2024 | An out of bounds read due to improper input validation in BuildFontMap in fontmgr.cpp in NI LabVIEW may disclose informa... |
| CVE-2024-10495 | HIGH | 7.8 | 0.2% | Dec 10, 2024 | An out of bounds read due to improper input validation when loading the font table in fontmgr.cpp in NI LabVIEW may disc... |
| CVE-2024-10494 | HIGH | 7.8 | 0.2% | Dec 10, 2024 | An out of bounds read due to improper input validation in HeapObjMapImpl.cpp in NI LabVIEW may disclose information or r... |
| CVE-2024-54095 | HIGH | 7.8 | 0.2% | Dec 10, 2024 | A vulnerability has been identified in Solid Edge SE2024 (All versions < V224.0 Update 10). The affected application is ... |
| CVE-2024-54094 | HIGH | 7.8 | 0.2% | Dec 10, 2024 | A vulnerability has been identified in Solid Edge SE2024 (All versions < V224.0 Update 5). The affected application is v... |
| CVE-2024-54093 | HIGH | 7.8 | 0.2% | Dec 10, 2024 | A vulnerability has been identified in Solid Edge SE2024 (All versions < V224.0 Update 5). The affected application is v... |
| CVE-2024-54091 | HIGH | 7.8 | 0.2% | Dec 10, 2024 | A vulnerability has been identified in Solid Edge SE2024 (All versions < V224.0 Update 12), Solid Edge SE2025 (All versi... |
| CVE-2024-53242 | HIGH | 7.8 | 0.2% | Dec 10, 2024 | A vulnerability has been identified in Teamcenter Visualization V14.2 (All versions < V14.2.0.14), Teamcenter Visualizat... |
| CVE-2024-53041 | HIGH | 7.8 | 0.2% | Dec 10, 2024 | A vulnerability has been identified in Teamcenter Visualization V14.2 (All versions < V14.2.0.14), Teamcenter Visualizat... |
| CVE-2024-52051 | HIGH | 7.3 | 0.2% | Dec 10, 2024 | A vulnerability has been identified in SIMATIC S7-PLCSIM V17 (All versions), SIMATIC S7-PLCSIM V18 (All versions), SIMAT... |
| CVE-2024-49849 | HIGH | 8.4 | 0.2% | Dec 10, 2024 | A vulnerability has been identified in SIMATIC S7-PLCSIM V16 (All versions), SIMATIC S7-PLCSIM V17 (All versions), SIMAT... |
| CVE-2024-52538 | HIGH | 8.8 | 0.4% | Dec 10, 2024 | Dell Avamar, versions prior to 19.12 with patch 338905, excluding 19.10 and 19.10SP1 with patch 338869, contains an Impr... |
| CVE-2024-47977 | HIGH | 8.8 | 0.6% | Dec 10, 2024 | Dell Avamar, versions prior to 19.12 with patch 338905, excluding 19.10 and 19.10SP1 with patch 338869, contains an Impr... |
| CVE-2024-10959 | HIGH | 7.3 | 0.6% | Dec 10, 2024 | The The Active Products Tables for WooCommerce. Use constructor to create tables plugin for WordPress is vulnerable to a... |
| CVE-2024-47946 | HIGH | 7.2 | 1.1% | Dec 10, 2024 | If the attacker has access to a valid Poweruser session, remote code execution is possible because specially crafted val... |
| CVE-2024-28138 | HIGH | 7.3 | 0.9% | Dec 10, 2024 | An unauthenticated attacker with network access to the affected device's web interface can execute any system command vi... |
| CVE-2024-21542 | HIGH | 8.6 | 1.1% | Dec 10, 2024 | Versions of the package luigi before 3.6.0 are vulnerable to Arbitrary File Write via Archive Extraction (Zip Slip) due ... |
| CVE-2024-53919 | HIGH | 7.6 | 0.4% | Dec 10, 2024 | An injection vulnerability in Barco ClickShare CX-30/20, C-5/10, and ClickShare Bar Pro and Core models, running firmwar... |
| CVE-2024-54198 | HIGH | 8.5 | 0.6% | Dec 10, 2024 | In certain conditions, SAP NetWeaver Application Server ABAP allows an authenticated attacker to craft a Remote Function... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now