2024 CVE Vulnerabilities

39,217 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-49350HIGH7.5IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.1.0 through 11.1.4.7, 11.5.0 through 11.5.9 and 12....
CVE-2024-51392HIGH8.8An issue in OpenKnowledgeMaps Headstart v7 allows a remote attacker to escalate privileges via the url parameter of the ...
CVE-2024-22654HIGH7.5tcpreplay v4.4.4 was discovered to contain an infinite loop via the tcprewrite function at get.c.
CVE-2024-52588HIGH7.5Strapi is an open-source content management system. Prior to version 4.25.2, inputting a local domain into the Webhooks ...
CVE-2024-51453HIGH7.5IBM Sterling Secure Proxy 6.2.0.0 through 6.2.0.1 could allow a remote attacker to traverse directories on the system. A...
CVE-2024-38341HIGH7.5IBM Sterling Secure Proxy 6.0.0.0 through 6.0.3.1, 6.1.0.0 through 6.1.0.0, and 6.2.0.0 through 6.2.0.1 uses weaker than...
CVE-2024-13966HIGH7.3ZKTeco BioTime allows unauthenticated attackers to enumerate usernames and log in as any user with a password unchanged ...
CVE-2024-49196HIGH7.5An issue was discovered in the GPU in Samsung Mobile Processor Exynos 1480 and 2400. Type confusion leads to a Denial of...
CVE-2024-38866HIGH7.5Improper neutralization of input in Nagvis before version 1.9.47 which can lead to livestatus injection
CVE-2024-9163HIGH7.5A business logic error in GitLab CE/EE affecting all versions starting from 12.1 prior to 17.10.7, 17.11 prior to 17.11....
CVE-2024-7803HIGH7.5An issue has been discovered in GitLab CE/EE affecting all versions from 11.6 before 17.10.7, 17.11 before 17.11.3, and ...
CVE-2024-13945HIGH8.4Stored Absolute Path Traversal vulnerabilities in ASPECT could expose sensitive data if administrator credentials becom...
CVE-2024-51553HIGH7Predictable filename vulnerabilities in ASPECT may expose sensitive information to a potential attacker if administrator...
CVE-2024-51552HIGH7.1Weak password storage vulnerabilities exist in ASPECT if administrator credentials become compromisedThis issue affects ...
CVE-2024-48848HIGH7Large content vulnerabilities are present in ASPECT exposing a device to disk overutilization on a system if administrat...
CVE-2024-41199HIGH7.2An issue in Ocuco Innovation - JOBMANAGER.EXE v2.10.24.16 allows attackers to bypass authentication and escalate privile...
CVE-2024-40462HIGH7.8An issue in Ocuco Innovation v.2.10.24.51 allows a local attacker to escalate privileges via the SETTINGSVATIGATOR.EXE c...
CVE-2024-40461HIGH7.8An issue in Ocuco Innovation v.2.10.24.51 allows a local attacker to escalate privileges via the STOCKORDERENTRY.EXE com...
CVE-2024-40460HIGH7.8An issue in Ocuco Innovation v.2.10.24.51 allows a local attacker to escalate privileges via the JOBENTRY.EXE
CVE-2024-40459HIGH7.8An issue in Ocuco Innovation APPMANAGER.EXE v.2.10.24.51 allows a local attacker to escalate privileges via the applicat...
CVE-2024-40458HIGH7.8An issue in Ocuco Innovation Tracking.exe v.2.10.24.51 allows a local attacker to escalate privileges via the modificati...
CVE-2024-13957HIGH7.6SSRF Server Side Request Forgery vulnerabilities exist in ASPECT if administrator credentials become compromisedThis iss...
CVE-2024-13956HIGH8.8SSL Verification Bypass vulnerabilities exist in ASPECT if administrator credentials become compromisedThis issue affect...
CVE-2024-13952HIGH8.7Predictable filename vulnerabilities in ASPECT may expose sensitive information to a potential attacker if administrator...
CVE-2024-13951HIGH7.6One way hash with predictable salt vulnerabilities in ASPECT may expose sensitive information to a potential attackerThi...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now