2024 CVE Vulnerabilities
39,243 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-4948 | MEDIUM | 6.5 | 0.9% | May 15, 2024 | Use after free in Dawn in Google Chrome prior to 125.0.6422.60 allowed a remote attacker to potentially exploit heap cor... |
| CVE-2024-4947 | CRITICAL | 9.6 | 15.1% | May 15, 2024 | Type Confusion in V8 in Google Chrome prior to 125.0.6422.60 allowed a remote attacker to execute arbitrary code inside ... |
| CVE-2024-4913 | CRITICAL | 9.8 | 0.5% | May 15, 2024 | A vulnerability classified as critical was found in Campcodes Online Examination System 1.0. This vulnerability affects ... |
| CVE-2024-4912 | CRITICAL | 9.8 | 0.5% | May 15, 2024 | A vulnerability classified as critical has been found in Campcodes Online Examination System 1.0. This affects an unknow... |
| CVE-2024-4911 | MEDIUM | 6.5 | 0.4% | May 15, 2024 | A vulnerability was found in Campcodes Complete Web-Based School Management System 1.0. It has been rated as critical. A... |
| CVE-2024-27244 | HIGH | 7.8 | 0.1% | May 15, 2024 | Insufficient verification of data authenticity in the installer for Zoom Workplace VDI App for Windows may allow an aut... |
| CVE-2024-27243 | MEDIUM | 6.5 | 0.4% | May 15, 2024 | Buffer overflow in some Zoom Workplace Apps and SDK’s may allow an authenticated user to conduct a denial of service via... |
| CVE-2024-4910 | MEDIUM | 6.5 | 0.4% | May 15, 2024 | A vulnerability was found in Campcodes Complete Web-Based School Management System 1.0. It has been declared as critical... |
| CVE-2024-4904 | MEDIUM | 6.3 | 0.6% | May 15, 2024 | A vulnerability was found in Byzoro Smart S200 Management Platform up to 20240507. It has been rated as critical. This i... |
| CVE-2024-34913 | MEDIUM | 5.4 | 0.4% | May 15, 2024 | An arbitrary file upload vulnerability in r-pan-scaffolding v5.0 and below allows attackers to execute arbitrary code vi... |
| CVE-2024-34909 | MEDIUM | 5.4 | 0.5% | May 15, 2024 | An arbitrary file upload vulnerability in KYKMS v1.0.1 and below allows attackers to execute arbitrary code via uploadin... |
| CVE-2024-34906 | MEDIUM | 5.4 | 0.4% | May 15, 2024 | An arbitrary file upload vulnerability in dootask v0.30.13 allows attackers to execute arbitrary code via uploading a cr... |
| CVE-2024-34025 | CRITICAL | 9.8 | 0.6% | May 15, 2024 | CyberPower PowerPanel business application code contains a hard-coded set of authentication credentials. This could res... |
| CVE-2024-33625 | CRITICAL | 9.8 | 0.5% | May 15, 2024 | CyberPower PowerPanel business application code contains a hard-coded JWT signing key. This could result in an attacke... |
| CVE-2024-33615 | HIGH | 8.8 | 0.7% | May 15, 2024 | A specially crafted Zip file containing path traversal characters can be imported to the CyberPower PowerPanel serve... |
| CVE-2024-32053 | CRITICAL | 9.8 | 0.5% | May 15, 2024 | Hard-coded credentials are used by the CyberPower PowerPanel platform to authenticate to the database, other servic... |
| CVE-2024-32047 | CRITICAL | 9.8 | 0.5% | May 15, 2024 | Hard-coded credentials for the CyberPower PowerPanel test server can be found in the production code. This might resul... |
| CVE-2024-32042 | HIGH | 7.5 | 0.4% | May 15, 2024 | The key used to encrypt passwords stored in the database can be found in the CyberPower PowerPanel application code, ... |
| CVE-2024-31856 | HIGH | 8.8 | 0.5% | May 15, 2024 | An attacker with certain MQTT permissions can create malicious messages to all CyberPower PowerPanel devices. This coul... |
| CVE-2024-31410 | MEDIUM | 6.5 | 0.2% | May 15, 2024 | The devices which CyberPower PowerPanel manages use identical certificates based on a hard-coded cryptographic key. Thi... |
| CVE-2024-31409 | HIGH | 7.5 | 0.4% | May 15, 2024 | Certain MQTT wildcards are not blocked on the CyberPower PowerPanel system, which might result in an attacker obtainin... |
| CVE-2024-4909 | MEDIUM | 6.5 | 0.4% | May 15, 2024 | A vulnerability was found in Campcodes Complete Web-Based School Management System 1.0. It has been classified as critic... |
| CVE-2024-4908 | MEDIUM | 6.5 | 0.4% | May 15, 2024 | A vulnerability was found in Campcodes Complete Web-Based School Management System 1.0 and classified as critical. This ... |
| CVE-2024-4907 | MEDIUM | 6.5 | 0.4% | May 15, 2024 | A vulnerability has been found in Campcodes Complete Web-Based School Management System 1.0 and classified as critical. ... |
| CVE-2024-4906 | HIGH | 7.5 | 0.4% | May 15, 2024 | A vulnerability, which was classified as critical, was found in Campcodes Complete Web-Based School Management System 1.... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now