2024 CVE Vulnerabilities

39,219 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-52568HIGH7.8A vulnerability has been identified in Teamcenter Visualization V14.2 (All versions < V14.2.0.14), Teamcenter Visualizat...
CVE-2024-52567HIGH7.8A vulnerability has been identified in Teamcenter Visualization V14.2 (All versions < V14.2.0.14), Teamcenter Visualizat...
CVE-2024-52566HIGH7.8A vulnerability has been identified in Teamcenter Visualization V14.2 (All versions < V14.2.0.14), Teamcenter Visualizat...
CVE-2024-52565HIGH7.8A vulnerability has been identified in Teamcenter Visualization V14.2 (All versions < V14.2.0.14), Teamcenter Visualizat...
CVE-2024-52436HIGH7.2Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Saad Iqbal Post SM...
CVE-2024-52435HIGH7.2Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Shahjada WPDM – Pr...
CVE-2024-52429HIGH8.8Unrestricted Upload of File with Dangerous Type vulnerability in AntonHoelstad WP Quick Setup wp-quick-setup allows Uplo...
CVE-2024-52427HIGH8.8Deserialization of Untrusted Data vulnerability in Vollstart Event Tickets with Ticket Scanner event-tickets-with-ticket...
CVE-2024-37155HIGH8.2OpenCTI is an open source platform allowing organizations to manage their cyber threat intelligence knowledge and observ...
CVE-2024-28058HIGH7.5In RSA NetWitness (NW) Platform before 12.5.1, even when an administrator revokes the access of a specific user with an ...
CVE-2024-8781HIGH8.7Execution with Unnecessary Privileges, : Improper Protection of Alternate Path vulnerability in TR7 Application Security...
CVE-2024-11318HIGH7.5An IDOR (Insecure Direct Object Reference) vulnerability has been discovered in AbsysNet, affecting version 2.3.1. This ...
CVE-2024-11303HIGH8.7The pathname of the root directory to a Restricted Directory ('Path Traversal') vulnerability in Korenix JetPort 5601 al...
CVE-2024-3370HIGH8.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Egebilgi Software ...
CVE-2024-42392HIGH7.5Improper Neutralization of Delimiters vulnerability in Cesanta Mongoose Web Server v7.14 allows to trigger an infinite l...
CVE-2024-42386HIGH7.5Use of Out-of-range Pointer Offset vulnerability in Cesanta Mongoose Web Server v7.14 allows an attacker to send an unex...
CVE-2024-42385HIGH7Improper Neutralization of Delimiters vulnerability in Cesanta Mongoose Web Server v7.14 allows to trigger an out-of-bou...
CVE-2024-42384HIGH7.5Integer Overflow or Wraparound vulnerability in Cesanta Mongoose Web Server v7.14 allows an attacker to send an unexpect...
CVE-2024-41974HIGH7.1A low privileged remote attacker may modify the BACNet service properties due to incorrect permission assignment for cri...
CVE-2024-41973HIGH8.1A low privileged remote attacker can specify an arbitrary file on the filesystem which may lead to an arbitrary file wri...
CVE-2024-41971HIGH8.1A low privileged remote attacker can overwrite an arbitrary file on the filesystem leading to a DoS and data loss.
CVE-2024-48962HIGH8.8Improper Control of Generation of Code ('Code Injection'), Cross-Site Request Forgery (CSRF), : Improper Neutralization ...
CVE-2024-45791HIGH7.5Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache HertzBeat. This issue affects Apache...
CVE-2024-45505HIGH8.8Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in Apache HertzBeat (i...
CVE-2024-41969HIGH8.8A low privileged remote attacker may modify the configuration of the CODESYS V3 service through a missing authentication...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now