2024 CVE Vulnerabilities
39,247 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-3444 | MEDIUM | 4.7 | 0.5% | Apr 8, 2024 | A vulnerability was found in Wangshen SecGate 3600 up to 20240408. It has been classified as critical. This affects an u... |
| CVE-2024-3443 | MEDIUM | 5.4 | 0.5% | Apr 8, 2024 | A vulnerability classified as problematic was found in SourceCodester Prison Management System 1.0. This vulnerability a... |
| CVE-2024-3442 | HIGH | 8.8 | 0.7% | Apr 8, 2024 | A vulnerability classified as critical has been found in SourceCodester Prison Management System 1.0. This affects an un... |
| CVE-2024-31221 | MEDIUM | 5.9 | 0.5% | Apr 8, 2024 | Sunshine is a self-hosted game stream host for Moonlight. Starting in version 0.10.0 and prior to version 0.23.0, after ... |
| CVE-2024-31205 | MEDIUM | 5.4 | 0.2% | Apr 8, 2024 | Saleor is an e-commerce platform. Starting in version 3.10.0 and prior to versions 3.14.64, 3.15.39, 3.16.39, 3.17.35, 3... |
| CVE-2024-30269 | MEDIUM | 5.3 | 16.0% | Apr 8, 2024 | DataEase, an open source data visualization and analysis tool, has a database configuration information exposure vulnera... |
| CVE-2024-3441 | HIGH | 8.8 | 0.7% | Apr 8, 2024 | A vulnerability was found in SourceCodester Prison Management System 1.0. It has been rated as critical. Affected by thi... |
| CVE-2024-3440 | HIGH | 7.2 | 0.7% | Apr 8, 2024 | A vulnerability was found in SourceCodester Prison Management System 1.0. It has been declared as critical. Affected by ... |
| CVE-2024-2511 | MEDIUM | 5.9 | 54.0% | Apr 8, 2024 | Issue summary: Some non-default TLS server configurations can cause unbounded memory growth when processing TLSv1.3 sess... |
| CVE-2024-28732 | HIGH | 7.5 | 0.8% | Apr 8, 2024 | An issue was discovered in OFPMatch in parser.py in Faucet SDN Ryu version 4.34, allows remote attackers to cause a deni... |
| CVE-2024-31817 | HIGH | 7.5 | 55.3% | Apr 8, 2024 | In TOTOLINK EX200 V4.0.3c.7646_B20201211, an attacker can obtain sensitive information without authorization through the... |
| CVE-2024-31816 | HIGH | 7.5 | 2.7% | Apr 8, 2024 | In TOTOLINK EX200 V4.0.3c.7646_B20201211, an attacker can obtain sensitive information without authorization through the... |
| CVE-2024-31815 | CRITICAL | 9.1 | 0.6% | Apr 8, 2024 | In TOTOLINK EX200 V4.0.3c.7314_B20191204, an attacker can obtain the configuration file without authorization through /c... |
| CVE-2024-31814 | HIGH | 8.8 | 8.6% | Apr 8, 2024 | TOTOLINK EX200 V4.0.3c.7646_B20201211 allows attackers to bypass login through the Form_Login function. |
| CVE-2024-31813 | HIGH | 8.4 | 0.2% | Apr 8, 2024 | TOTOLINK EX200 V4.0.3c.7646_B20201211 does not contain an authentication mechanism by default. |
| CVE-2024-31812 | MEDIUM | 6.5 | 0.3% | Apr 8, 2024 | In TOTOLINK EX200 V4.0.3c.7646_B20201211, an attacker can obtain sensitive information without authorization through the... |
| CVE-2024-31811 | HIGH | 8 | 1.0% | Apr 8, 2024 | TOTOLINK EX200 V4.0.3c.7646_B20201211 was discovered to contain a remote code execution (RCE) vulnerability via the lang... |
| CVE-2024-31809 | HIGH | 8.8 | 1.0% | Apr 8, 2024 | TOTOLINK EX200 V4.0.3c.7646_B20201211 was discovered to contain a remote code execution (RCE) vulnerability via the File... |
| CVE-2024-31808 | HIGH | 8.8 | 0.9% | Apr 8, 2024 | TOTOLINK EX200 V4.0.3c.7646_B20201211 was discovered to contain a remote code execution (RCE) vulnerability via the webW... |
| CVE-2024-31807 | CRITICAL | 9.8 | 1.4% | Apr 8, 2024 | TOTOLINK EX200 V4.0.3c.7646_B20201211 was discovered to contain a remote code execution (RCE) vulnerability via the host... |
| CVE-2024-31806 | MEDIUM | 6.5 | 0.4% | Apr 8, 2024 | TOTOLINK EX200 V4.0.3c.7646_B20201211 was discovered to contain a Denial-of-Service (DoS) vulnerability in the RebootSys... |
| CVE-2024-31805 | MEDIUM | 6.5 | 0.5% | Apr 8, 2024 | TOTOLINK EX200 V4.0.3c.7646_B20201211 allows attackers to start the Telnet service without authorization via the telnet_... |
| CVE-2024-2834 | HIGH | 8.7 | 0.5% | Apr 8, 2024 | A Stored Cross-Site Scripting (XSS) vulnerability has been identified in OpenText ArcSight Management Center and ArcSigh... |
| CVE-2024-28066 | HIGH | 8.8 | 0.5% | Apr 8, 2024 | In Unify CP IP Phone firmware 1.10.4.3, Weak Credentials are used (a hardcoded root password). |
| CVE-2024-3439 | CRITICAL | 9.8 | 0.9% | Apr 8, 2024 | A vulnerability was found in SourceCodester Prison Management System 1.0. It has been classified as critical. Affected i... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now