2024 CVE Vulnerabilities

39,219 CVEs published in 2024.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2024-4764CRITICAL9.8Multiple WebRTC threads could have claimed a newly connected audio input leading to use-after-free. This vulnerability a...
CVE-2024-33485CRITICAL9.8SQL Injection vulnerability in CASAP Automated Enrollment System using PHP/MySQLi with Source Code V1.0 allows a remote ...
CVE-2024-31488CRITICAL9An improper neutralization of inputs during web page generation vulnerability [CWE-79] in FortiNAC version 9.4.0 through...
CVE-2024-27107CRITICAL9.6Weak account password in GE HealthCare EchoPAC products
CVE-2024-34687CRITICAL9SAP NetWeaver Application Server for ABAP and ABAP Platform do not sufficiently encode user controlled inputs, resulting...
CVE-2024-34256CRITICAL9.8OFCMS V1.1.2 is vulnerable to SQL Injection via the new table function.
CVE-2024-33868CRITICAL9.8An issue was discovered in linqi before 1.4.0.1 on Windows. There is LDAP injection.
CVE-2024-33863CRITICAL9.8An issue was discovered in linqi before 1.4.0.1 on Windows. There is /api/Cdn/GetFile local file inclusion.
CVE-2024-33499CRITICAL9.4A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions < V3.0.1.1), SIMATIC ...
CVE-2024-33006CRITICAL9.6 An unauthenticated attacker can upload a malicious file to the server which when accessed by a victim can allow an atta...
CVE-2024-32977CRITICAL9.4OctoPrint provides a web interface for controlling consumer 3D printers. OctoPrint versions up until and including 1.10....
CVE-2024-32741CRITICAL10A vulnerability has been identified in SIMATIC CN 4100 (All versions < V3.0). The affected device contains hard coded pa...
CVE-2024-32740CRITICAL9.8A vulnerability has been identified in SIMATIC CN 4100 (All versions < V3.0). The affected device contains undocumented ...
CVE-2024-32353CRITICAL9.8TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain a command injection vulnerability via the 'port' param...
CVE-2024-30209CRITICAL9.6A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions < V3.0.1.1), SIMATIC ...
CVE-2024-30207CRITICAL10A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions < V3.0.1.1), SIMATIC ...
CVE-2024-28165CRITICAL9.3 SAP Business Objects Business Intelligence Platform is vulnerable to stored XSS allowing an attacker to manipulate a pa...
CVE-2024-27939CRITICAL9.8A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.5). The affected systems allow the upload o...
CVE-2024-4825CRITICAL9.8A vulnerability has been discovered in Agentejo Cockpit CMS v0.5.5 that consists in an arbitrary file upload in ‘/media/...
CVE-2024-4824CRITICAL9.8Vulnerability in School ERP Pro+Responsive 1.0 that allows SQL injection through the '/SchoolERP/office_admin/' index in...
CVE-2024-4816CRITICAL9.8A vulnerability, which was classified as critical, was found in Ruijie RG-UAC up to 20240506. This affects an unknown pa...
CVE-2024-4815CRITICAL9.8A vulnerability, which was classified as critical, has been found in Ruijie RG-UAC up to 20240506. Affected by this issu...
CVE-2024-4814CRITICAL9.8A vulnerability classified as critical was found in Ruijie RG-UAC up to 20240506. Affected by this vulnerability is an u...
CVE-2024-4813CRITICAL9.8A vulnerability classified as critical has been found in Ruijie RG-UAC up to 20240506. Affected is an unknown function o...
CVE-2024-4809CRITICAL9.8A vulnerability has been found in SourceCodester Open Source Clinic Management System 1.0 and classified as critical. Af...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now