2024 CVE Vulnerabilities

39,247 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-3444MEDIUM4.7A vulnerability was found in Wangshen SecGate 3600 up to 20240408. It has been classified as critical. This affects an u...
CVE-2024-3443MEDIUM5.4A vulnerability classified as problematic was found in SourceCodester Prison Management System 1.0. This vulnerability a...
CVE-2024-3442HIGH8.8A vulnerability classified as critical has been found in SourceCodester Prison Management System 1.0. This affects an un...
CVE-2024-31221MEDIUM5.9Sunshine is a self-hosted game stream host for Moonlight. Starting in version 0.10.0 and prior to version 0.23.0, after ...
CVE-2024-31205MEDIUM5.4Saleor is an e-commerce platform. Starting in version 3.10.0 and prior to versions 3.14.64, 3.15.39, 3.16.39, 3.17.35, 3...
CVE-2024-30269MEDIUM5.3DataEase, an open source data visualization and analysis tool, has a database configuration information exposure vulnera...
CVE-2024-3441HIGH8.8A vulnerability was found in SourceCodester Prison Management System 1.0. It has been rated as critical. Affected by thi...
CVE-2024-3440HIGH7.2A vulnerability was found in SourceCodester Prison Management System 1.0. It has been declared as critical. Affected by ...
CVE-2024-2511MEDIUM5.9Issue summary: Some non-default TLS server configurations can cause unbounded memory growth when processing TLSv1.3 sess...
CVE-2024-28732HIGH7.5An issue was discovered in OFPMatch in parser.py in Faucet SDN Ryu version 4.34, allows remote attackers to cause a deni...
CVE-2024-31817HIGH7.5In TOTOLINK EX200 V4.0.3c.7646_B20201211, an attacker can obtain sensitive information without authorization through the...
CVE-2024-31816HIGH7.5In TOTOLINK EX200 V4.0.3c.7646_B20201211, an attacker can obtain sensitive information without authorization through the...
CVE-2024-31815CRITICAL9.1In TOTOLINK EX200 V4.0.3c.7314_B20191204, an attacker can obtain the configuration file without authorization through /c...
CVE-2024-31814HIGH8.8TOTOLINK EX200 V4.0.3c.7646_B20201211 allows attackers to bypass login through the Form_Login function.
CVE-2024-31813HIGH8.4TOTOLINK EX200 V4.0.3c.7646_B20201211 does not contain an authentication mechanism by default.
CVE-2024-31812MEDIUM6.5In TOTOLINK EX200 V4.0.3c.7646_B20201211, an attacker can obtain sensitive information without authorization through the...
CVE-2024-31811HIGH8TOTOLINK EX200 V4.0.3c.7646_B20201211 was discovered to contain a remote code execution (RCE) vulnerability via the lang...
CVE-2024-31809HIGH8.8TOTOLINK EX200 V4.0.3c.7646_B20201211 was discovered to contain a remote code execution (RCE) vulnerability via the File...
CVE-2024-31808HIGH8.8TOTOLINK EX200 V4.0.3c.7646_B20201211 was discovered to contain a remote code execution (RCE) vulnerability via the webW...
CVE-2024-31807CRITICAL9.8TOTOLINK EX200 V4.0.3c.7646_B20201211 was discovered to contain a remote code execution (RCE) vulnerability via the host...
CVE-2024-31806MEDIUM6.5TOTOLINK EX200 V4.0.3c.7646_B20201211 was discovered to contain a Denial-of-Service (DoS) vulnerability in the RebootSys...
CVE-2024-31805MEDIUM6.5TOTOLINK EX200 V4.0.3c.7646_B20201211 allows attackers to start the Telnet service without authorization via the telnet_...
CVE-2024-2834HIGH8.7A Stored Cross-Site Scripting (XSS) vulnerability has been identified in OpenText ArcSight Management Center and ArcSigh...
CVE-2024-28066HIGH8.8In Unify CP IP Phone firmware 1.10.4.3, Weak Credentials are used (a hardcoded root password).
CVE-2024-3439CRITICAL9.8A vulnerability was found in SourceCodester Prison Management System 1.0. It has been classified as critical. Affected i...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now