2024 CVE Vulnerabilities

39,243 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-35102HIGH8.8Insecure Permissions vulnerability in VITEC AvediaServer (Model avsrv-m8105) 8.6.2-1 allows a remote attacker to escalat...
CVE-2024-4905HIGH8.8A vulnerability classified as critical has been found in Kashipara College Management System 1.0. Affected is an unknown...
CVE-2024-3182MEDIUM6.5Install-type password disclosure vulnerability in Universal Installer including the Silent Installer in TIBCO Hawk versi...
CVE-2024-25743HIGH7.1In the Linux kernel through 6.9, an untrusted hypervisor can inject virtual interrupts 0 and 14 at any point in time and...
CVE-2024-20394MEDIUM5.5A vulnerability in Cisco AppDynamics Network Visibility Agent could allow an unauthenticated, local attacker to cause a ...
CVE-2024-20392MEDIUM6.1A vulnerability in the web-based management API of Cisco AsyncOS Software for Cisco Secure Email Gateway could allow an ...
CVE-2024-20391MEDIUM6.8A vulnerability in the Network Access Manager (NAM) module of Cisco Secure Client could allow an unauthenticated attacke...
CVE-2024-20383HIGH8.4A vulnerability in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email and Web Manager c...
CVE-2024-20369MEDIUM6.1A vulnerability in the web-based management interface of Cisco Crosswork Network Services Orchestrator (NSO) could allow...
CVE-2024-20366HIGH7.8A vulnerability in the Tail-f High Availability Cluster Communications (HCC) function pack of Cisco Crosswork Network Se...
CVE-2024-20258MEDIUM6.1A vulnerability in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email and Web Manager a...
CVE-2024-20257MEDIUM4.8A vulnerability in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email Gateway could all...
CVE-2024-20256MEDIUM4.8A vulnerability in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email and Web Manager a...
CVE-2024-4837MEDIUM5.3In Progress Telerik Report Server, version 2024 Q1 (10.0.24.305) or earlier, on IIS, an unauthenticated attacker can gai...
CVE-2024-4622HIGH8.3If misconfigured, alpitronic Hypercharger EV charging devices can expose a web interface protected by authentication. I...
CVE-2024-4357MEDIUM6.5An information disclosure vulnerability exists in Progress Telerik Report Server, version 2024 Q1 (10.0.24.305) or earli...
CVE-2024-4202HIGH8.6In Progress® Telerik® Reporting versions prior to 2024 Q2 (18.1.24.514), a code execution attack is possible through an ...
CVE-2024-4200HIGH7.8In Progress® Telerik® Reporting versions prior to 2024 Q2 (18.1.24.2.514), a code execution attack is possible by a loca...
CVE-2024-3970HIGH7.5Server Side Request Forgery vulnerability has been discovered in OpenText™ iManager 3.2.6.0200. This could lead to senst...
CVE-2024-3968CRITICAL9.8Remote Code Execution has been discovered in OpenText™ iManager 3.2.6.0200. The vulnerability can trigger remote code ex...
CVE-2024-3967CRITICAL9.8Remote Code Execution has been discovered in OpenText™ iManager 3.2.6.0200. The vulnerability can trigger remote code ex...
CVE-2024-3892MEDIUM6.7A local code execution vulnerability is possible in Telerik UI for WinForms beginning in v2021.1.122 but prior to v2024....
CVE-2024-3488CRITICAL9.8File Upload vulnerability in unauthenticated session found in OpenText™ iManager 3.2.6.0200. The vulnerability could all...
CVE-2024-3487CRITICAL9.8Broken Authentication vulnerability discovered in OpenText™ iManager 3.2.6.0200. This vulnerability allows an attacker t...
CVE-2024-3486CRITICAL9.8XML External Entity injection vulnerability found in OpenText™ iManager 3.2.6.0200. This could lead to information discl...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now