2024 CVE Vulnerabilities
39,250 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-22223 | HIGH | 7.8 | 0.9% | Feb 12, 2024 | Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability within its svc_cbr utility. An authen... |
| CVE-2024-22222 | HIGH | 7.8 | 0.9% | Feb 12, 2024 | Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability within its svc_udoctor utility. An au... |
| CVE-2024-22221 | MEDIUM | 6.5 | 0.4% | Feb 12, 2024 | Dell Unity, versions prior to 5.4, contains SQL Injection vulnerability. An authenticated attacker could potentially ex... |
| CVE-2024-0170 | HIGH | 7.8 | 0.8% | Feb 12, 2024 | Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_cava utility. An authentic... |
| CVE-2024-0169 | MEDIUM | 5.4 | 0.3% | Feb 12, 2024 | Dell Unity, version(s) 5.3 and prior, contain(s) an Improper Neutralization of Input During Web Page Generation ('Cross-... |
| CVE-2024-0168 | HIGH | 7.8 | 0.8% | Feb 12, 2024 | Dell Unity, versions prior to 5.4, contains a Command Injection Vulnerability in svc_oscheck utility. An authenticated ... |
| CVE-2024-0167 | HIGH | 7.8 | 0.8% | Feb 12, 2024 | Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in the svc_topstats utility. An authe... |
| CVE-2024-0166 | HIGH | 7.8 | 1.1% | Feb 12, 2024 | Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_tcpdump utility. An authen... |
| CVE-2024-0165 | HIGH | 7.8 | 1.0% | Feb 12, 2024 | Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_acldb_dump utility. An aut... |
| CVE-2024-0164 | HIGH | 7.8 | 1.1% | Feb 12, 2024 | Dell Unity, versions prior to 5.4, contain an OS Command Injection Vulnerability in its svc_topstats utility. An authen... |
| CVE-2024-25360 | MEDIUM | 5.3 | 0.4% | Feb 12, 2024 | A hidden interface in Motorola CX2L Router firmware v1.0.1 leaks information regarding the SystemWizardStatus component ... |
| CVE-2024-0566 | HIGH | 7.2 | 3.3% | Feb 12, 2024 | The Smart Manager WordPress plugin before 8.28.0 does not properly sanitise and escape a parameter before using it in a ... |
| CVE-2024-0421 | MEDIUM | 5.3 | 0.6% | Feb 12, 2024 | The MapPress Maps for WordPress plugin before 2.88.16 is affected by an IDOR as it does not ensure that posts to be retr... |
| CVE-2024-0420 | MEDIUM | 5.4 | 0.5% | Feb 12, 2024 | The MapPress Maps for WordPress plugin before 2.88.15 does not sanitize and escape the map title when outputting it back... |
| CVE-2024-0250 | MEDIUM | 6.1 | 1.3% | Feb 12, 2024 | The Analytics Insights for Google Analytics 4 (AIWP) WordPress plugin before 6.3 is vulnerable to Open Redirect due to i... |
| CVE-2024-0248 | MEDIUM | 4.3 | 0.4% | Feb 12, 2024 | The EazyDocs WordPress plugin before 2.4.0 re-introduced CVE-2023-6029 (https://wpscan.com/vulnerability/7a0aaf85-8130-4... |
| CVE-2024-1420 | — | — | — | Feb 12, 2024 | Rejected reason: **REJECT** This is a duplicate of CVE-2024-1049. Please use CVE-2024-1049 instead. |
| CVE-2024-1062 | MEDIUM | 5.5 | 0.3% | Feb 12, 2024 | A heap overflow flaw was found in 389-ds-base. This issue leads to a denial of service when writing a value larger than ... |
| CVE-2024-1439 | LOW | 3.3 | 0.3% | Feb 12, 2024 | Inadequate access control in Moodle LMS. This vulnerability could allow a local user with a student role to create arbit... |
| CVE-2024-24935 | HIGH | 8.8 | 0.2% | Feb 12, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in WpSimpleTools Basic Log Viewer.This issue affects Basic Log Viewer: f... |
| CVE-2024-24929 | HIGH | 8.8 | 0.2% | Feb 12, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Ryan Duff, Peter Westwood WP Contact Form.This issue affects WP Conta... |
| CVE-2024-24887 | HIGH | 8.8 | 0.2% | Feb 12, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Contest Gallery Photos and Files Contest Gallery – Contact Form, Uplo... |
| CVE-2024-24884 | HIGH | 8.8 | 0.2% | Feb 12, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in ARI Soft Contact Form 7 Connector.This issue affects Contact Form 7 C... |
| CVE-2024-24875 | HIGH | 8.8 | 0.2% | Feb 12, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Yannick Lefebvre Link Library.This issue affects Link Library: from n... |
| CVE-2024-23512 | CRITICAL | 9.8 | 0.5% | Feb 12, 2024 | Deserialization of Untrusted Data vulnerability in wpxpo ProductX – WooCommerce Builder & Gutenberg WooCommerce Blocks.T... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now