2024 CVE Vulnerabilities

39,250 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-1302MEDIUM5.5Information exposure vulnerability in Badger Meter Monitool affecting versions up to 4.6.3 and earlier. A local attacker...
CVE-2024-1301HIGH7.5SQL injection vulnerability in Badger Meter Monitool affecting versions 4.6.3 and earlier. A remote attacker could send ...
CVE-2024-2394CRITICAL9.8A vulnerability was found in SourceCodester Employee Management System 1.0. It has been rated as critical. Affected by t...
CVE-2024-23112MEDIUM4.3An authorization bypass through user-controlled key vulnerability [CWE-639] in FortiOS version 7.4.0 through 7.4.1, 7.2....
CVE-2024-21761MEDIUM4.3An improper authorization vulnerability [CWE-285] in FortiPortal version 7.2.0, and versions 7.0.6 and below reports may...
CVE-2024-1618HIGH7.8A search path or unquoted item vulnerability in Faronics Deep Freeze Server Standard, which affects versions 8.30.020.46...
CVE-2024-1227MEDIUM6.5An open redirect vulnerability, the exploitation of which could allow an attacker to create a custom URL and redirect a ...
CVE-2024-1226HIGH7.5The software does not neutralize or incorrectly neutralizes certain characters before the data is included in outgoing H...
CVE-2024-2393CRITICAL9.8A vulnerability was found in SourceCodester CRUD without Page Reload 1.0. It has been declared as critical. Affected by ...
CVE-2024-2049MEDIUM5.3Server-Side Request Forgery (SSRF) in Citrix SD-WAN Standard/Premium Editions on or after 11.4.0 and before 11.4.4.46 al...
CVE-2024-28553CRITICAL9.8Tenda AC18 V15.03.05.05 has a stack overflow vulnerability in the entrys parameter fromAddressNat function.
CVE-2024-28535CRITICAL9.8Tenda AC18 V15.03.05.05 has a stack overflow vulnerability in the mitInterface parameter of fromAddressNat function.
CVE-2024-2391MEDIUM6.1A vulnerability was found in EVE-NG 5.0.1-13 and classified as problematic. Affected by this issue is some unknown funct...
CVE-2024-27907HIGH7.8A vulnerability has been identified in Simcenter Femap (All versions < V2306.0000). The affected application contains an...
CVE-2024-22045MEDIUM6.5A vulnerability has been identified in SINEMA Remote Connect Client (All versions < V3.1 SP1). The product places sensit...
CVE-2024-22044HIGH7.5A vulnerability has been identified in SENTRON 3KC ATC6 Expansion Module Ethernet (3KC9000-8TL75) (All versions). Affect...
CVE-2024-22041HIGH7.5A vulnerability has been identified in Cerberus PRO EN Engineering Tool (All versions), Cerberus PRO EN Fire Panel FC72x...
CVE-2024-22040HIGH7.5A vulnerability has been identified in Cerberus PRO EN Engineering Tool (All versions), Cerberus PRO EN Fire Panel FC72x...
CVE-2024-22039CRITICAL9.8A vulnerability has been identified in Cerberus PRO EN Engineering Tool (All versions < IP8), Cerberus PRO EN Fire Panel...
CVE-2024-21483MEDIUM5.1A vulnerability has been identified in SENTRON 7KM PAC3120 AC/DC (7KM3120-0BA01-1DA0) (All versions >= V3.2.3 < V3.2.4 o...
CVE-2024-2371MEDIUM6.2Information exposure vulnerability in Korenix JetI/O 6550 affecting firmware version F208 Build:0817. The SNMP protocol ...
CVE-2024-27279MEDIUM6.5Directory traversal vulnerability exists in a-blog cms Ver.3.1.x series Ver.3.1.9 and earlier, Ver.3.0.x series Ver.3.0....
CVE-2024-26288HIGH8.7An unauthenticated remote attacker can influence the communication due to the lack of encryption of sensitive data via a...
CVE-2024-26005MEDIUM4.8An unauthenticated remote attacker can gain service level privileges through an incomplete cleanup during service restar...
CVE-2024-26004HIGH7.5An unauthenticated remote attacker can DoS a control agent due to access of a uninitialized pointer which may prevent or...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now