2024 CVE Vulnerabilities
39,250 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-28547 | MEDIUM | 6.5 | 0.5% | Mar 18, 2024 | Tenda AC18 V15.03.05.05 has a stack overflow vulnerability in the firewallEn parameter of formSetFirewallCfg function. |
| CVE-2024-28537 | CRITICAL | 9.8 | 0.8% | Mar 18, 2024 | Tenda AC18 V15.03.05.05 has a stack overflow vulnerability in the page parameter of fromNatStaticSetting function. |
| CVE-2024-27774 | MEDIUM | 6.5 | 0.4% | Mar 18, 2024 | Unitronics Unistream Unilogic – Versions prior to 1.35.227 - CWE-259: Use of Hard-coded Password may allow disclosing ... |
| CVE-2024-27773 | HIGH | 8.8 | 0.4% | Mar 18, 2024 | Unitronics Unistream Unilogic – Versions prior to 1.35.227 - CWE-348: Use of Less Trusted Source may allow RCE |
| CVE-2024-27772 | HIGH | 8.8 | 1.7% | Mar 18, 2024 | Unitronics Unistream Unilogic – Versions prior to 1.35.227 - CWE-78: 'OS Command Injection' may allow RCE |
| CVE-2024-27771 | HIGH | 8.8 | 0.8% | Mar 18, 2024 | Unitronics Unistream Unilogic – Versions prior to 1.35.227 - CWE-22: 'Path Traversal' may allow RCE |
| CVE-2024-27770 | HIGH | 8.8 | 0.8% | Mar 18, 2024 | Unitronics Unistream Unilogic – Versions prior to 1.35.227 - CWE-23: Relative Path Traversal |
| CVE-2024-27769 | HIGH | 8.8 | 0.7% | Mar 18, 2024 | Unitronics Unistream Unilogic – Versions prior to 1.35.227 - CWE-200: Exposure of Sensitive Information to an Unautho... |
| CVE-2024-27768 | CRITICAL | 9.8 | 0.9% | Mar 18, 2024 | Unitronics Unistream Unilogic – Versions prior to 1.35.227 - CWE-22: 'Path Traversal' may allow RCE |
| CVE-2024-27767 | CRITICAL | 9.8 | 0.7% | Mar 18, 2024 | CWE-287: Improper Authentication may allow Authentication Bypass |
| CVE-2024-2496 | MEDIUM | 5.5 | 0.3% | Mar 18, 2024 | A NULL pointer dereference flaw was found in the udevConnectListAllInterfaces() function in libvirt. This issue can occu... |
| CVE-2024-2002 | HIGH | 7.5 | 1.1% | Mar 18, 2024 | A double-free vulnerability was found in libdwarf. In a multiply-corrupted DWARF object, libdwarf may try to dealloc(fre... |
| CVE-2024-28550 | MEDIUM | 4.3 | 0.4% | Mar 18, 2024 | Tenda AC18 V15.03.05.05 has a stack overflow vulnerability in the filePath parameter of formExpandDlnaFile function. |
| CVE-2024-20767 | HIGH | 7.4 | 98.5% | Mar 18, 2024 | ColdFusion versions 2023.6, 2021.12 and earlier are affected by an Improper Access Control vulnerability that could resu... |
| CVE-2024-26641 | MEDIUM | 5.5 | 0.2% | Mar 18, 2024 | In the Linux kernel, the following vulnerability has been resolved: ip6_tunnel: make sure to pull inner header in __ip6... |
| CVE-2024-26640 | MEDIUM | 5.5 | 0.2% | Mar 18, 2024 | In the Linux kernel, the following vulnerability has been resolved: tcp: add sanity checks to rx zerocopy TCP rx zeroc... |
| CVE-2024-26639 | — | — | — | Mar 18, 2024 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2024-26638 | MEDIUM | 4.4 | 0.2% | Mar 18, 2024 | In the Linux kernel, the following vulnerability has been resolved: nbd: always initialize struct msghdr completely sy... |
| CVE-2024-26637 | MEDIUM | 5.5 | 0.2% | Mar 18, 2024 | In the Linux kernel, the following vulnerability has been resolved: wifi: ath11k: rely on mac80211 debugfs handling for... |
| CVE-2024-26636 | MEDIUM | 5.5 | 0.2% | Mar 18, 2024 | In the Linux kernel, the following vulnerability has been resolved: llc: make llc_ui_sendmsg() more robust against bond... |
| CVE-2024-26635 | MEDIUM | 5.5 | 0.2% | Mar 18, 2024 | In the Linux kernel, the following vulnerability has been resolved: llc: Drop support for ETH_P_TR_802_2. syzbot repor... |
| CVE-2024-26634 | MEDIUM | 5.5 | 0.2% | Mar 18, 2024 | In the Linux kernel, the following vulnerability has been resolved: net: fix removing a namespace with conflicting altn... |
| CVE-2024-26633 | MEDIUM | 5.5 | 0.3% | Mar 18, 2024 | In the Linux kernel, the following vulnerability has been resolved: ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tn... |
| CVE-2024-26632 | MEDIUM | 5.5 | 0.2% | Mar 18, 2024 | In the Linux kernel, the following vulnerability has been resolved: block: Fix iterating over an empty bio with bio_for... |
| CVE-2024-26631 | MEDIUM | 4.7 | 0.2% | Mar 18, 2024 | In the Linux kernel, the following vulnerability has been resolved: ipv6: mcast: fix data-race in ipv6_mc_down / mld_if... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now