2024 CVE Vulnerabilities
39,247 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-2947 | HIGH | 7.3 | 1.2% | Mar 28, 2024 | A flaw was found in Cockpit. Deleting a sosreport with a crafted name via the Cockpit web interface can lead to a comman... |
| CVE-2024-28713 | CRITICAL | 9.8 | 1.5% | Mar 28, 2024 | An issue in Mblog Blog system v.3.5.0 allows an attacker to execute arbitrary code via a crafted file to the theme manag... |
| CVE-2024-27719 | MEDIUM | 6.1 | 0.5% | Mar 28, 2024 | A cross site scripting (XSS) vulnerability in rems FAQ Management System v.1.0 allows a remote attacker to obtain sensit... |
| CVE-2024-25971 | MEDIUM | 6.5 | 0.6% | Mar 28, 2024 | Dell PowerProtect Data Manager, version 19.15, contains an XML External Entity Injection vulnerability. A remote high pr... |
| CVE-2024-25963 | HIGH | 7.5 | 0.3% | Mar 28, 2024 | Dell PowerScale OneFS, versions 8.2.2.x through 9.5.0.x contains a use of a broken cryptographic algorithm vulnerability... |
| CVE-2024-25960 | HIGH | 7.8 | 0.1% | Mar 28, 2024 | Dell PowerScale OneFS versions 8.2.2.x through 9.7.0.x contains a cleartext transmission of sensitive information vulner... |
| CVE-2024-25955 | HIGH | 8.8 | 1.4% | Mar 28, 2024 | Dell vApp Manager, versions prior to 9.2.4.9 contain a Command Injection Vulnerability. An authorized attacker could pot... |
| CVE-2024-25954 | HIGH | 7.5 | 0.6% | Mar 28, 2024 | Dell PowerScale OneFS, versions 9.5.0.x through 9.7.0.x, contain an insufficient session expiration vulnerability. A rem... |
| CVE-2024-25953 | MEDIUM | 6 | 0.2% | Mar 28, 2024 | Dell PowerScale OneFS versions 9.4.0.x through 9.7.0.x contains an UNIX symbolic link (symlink) following vulnerability.... |
| CVE-2024-25952 | MEDIUM | 6 | 0.2% | Mar 28, 2024 | Dell PowerScale OneFS versions 8.2.2.x through 9.7.0.x contains an UNIX symbolic link (symlink) following vulnerability.... |
| CVE-2024-25946 | HIGH | 8.8 | 1.4% | Mar 28, 2024 | Dell vApp Manager, versions prior to 9.2.4.9 contain a Command Injection Vulnerability. An authorized attacker could pot... |
| CVE-2024-25961 | MEDIUM | 6.7 | 0.2% | Mar 28, 2024 | Dell PowerScale OneFS versions 8.2.2.x through 9.7.0.x contains an improper privilege management vulnerability. A local ... |
| CVE-2024-25959 | MEDIUM | 5.5 | 0.2% | Mar 28, 2024 | Dell PowerScale OneFS versions 9.4.0.x through 9.7.0.x contains an insertion of sensitive information into log file vuln... |
| CVE-2024-3042 | CRITICAL | 9.1 | 0.6% | Mar 28, 2024 | A vulnerability was found in SourceCodester Simple Subscription Website 1.0 and classified as critical. This issue affec... |
| CVE-2024-3041 | CRITICAL | 9.8 | 0.8% | Mar 28, 2024 | A vulnerability has been found in Netentsec NS-ASG Application Security Gateway 6.3 and classified as critical. This vul... |
| CVE-2024-3040 | CRITICAL | 9.8 | 0.8% | Mar 28, 2024 | A vulnerability, which was classified as critical, was found in Netentsec NS-ASG Application Security Gateway 6.3. This ... |
| CVE-2024-3039 | CRITICAL | 9.8 | 0.7% | Mar 28, 2024 | A vulnerability classified as critical has been found in Shanghai Brad Technology BladeX 3.4.0. Affected is an unknown f... |
| CVE-2024-31140 | MEDIUM | 4.9 | 0.4% | Mar 28, 2024 | In JetBrains TeamCity before 2024.03 server administrators could remove arbitrary files from the server by installing to... |
| CVE-2024-31139 | HIGH | 8.1 | 0.5% | Mar 28, 2024 | In JetBrains TeamCity before 2024.03 xXE was possible in the Maven build steps detector |
| CVE-2024-31138 | MEDIUM | 5.4 | 74.5% | Mar 28, 2024 | In JetBrains TeamCity before 2024.03 xSS was possible via Agent Distribution settings |
| CVE-2024-31137 | MEDIUM | 6.1 | 0.4% | Mar 28, 2024 | In JetBrains TeamCity before 2024.03 reflected XSS was possible via Space connection configuration |
| CVE-2024-31136 | HIGH | 7.4 | 0.5% | Mar 28, 2024 | In JetBrains TeamCity before 2024.03 2FA could be bypassed by providing a special URL parameter |
| CVE-2024-31135 | MEDIUM | 6.1 | 0.5% | Mar 28, 2024 | In JetBrains TeamCity before 2024.03 open redirect was possible on the login page |
| CVE-2024-31134 | MEDIUM | 6.5 | 0.4% | Mar 28, 2024 | In JetBrains TeamCity before 2024.03 authenticated users without administrative permissions could register other users w... |
| CVE-2024-30612 | HIGH | 8.1 | 0.7% | Mar 28, 2024 | Tenda AC10U v15.03.06.48 has a stack overflow vulnerability in the deviceId, limitSpeed, limitSpeedUp parameter from for... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now