2024 CVE Vulnerabilities
39,250 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-20828 | MEDIUM | 4.6 | 0.2% | Feb 6, 2024 | Improper authorization verification vulnerability in Samsung Internet prior to version 24.0 allows physical attackers to... |
| CVE-2024-20827 | MEDIUM | 4.6 | 0.2% | Feb 6, 2024 | Improper access control vulnerability in Samsung Gallery prior to version 14.5.04.4 allows physical attackers to access ... |
| CVE-2024-20826 | MEDIUM | 5.5 | 0.1% | Feb 6, 2024 | Implicit intent hijacking vulnerability in UPHelper library prior to version 4.0.0 allows local attackers to access sens... |
| CVE-2024-20825 | MEDIUM | 5.5 | 0.2% | Feb 6, 2024 | Implicit intent hijacking vulnerability in IAP of Galaxy Store prior to version 4.5.63.6 allows local attackers to acces... |
| CVE-2024-20824 | MEDIUM | 5.5 | 0.2% | Feb 6, 2024 | Implicit intent hijacking vulnerability in VoiceSearch of Galaxy Store prior to version 4.5.63.6 allows local attackers ... |
| CVE-2024-20823 | MEDIUM | 5.5 | 0.2% | Feb 6, 2024 | Implicit intent hijacking vulnerability in SamsungAccount of Galaxy Store prior to version 4.5.63.6 allows local attacke... |
| CVE-2024-20822 | MEDIUM | 5.5 | 0.2% | Feb 6, 2024 | Implicit intent hijacking vulnerability in AccountActivity of Galaxy Store prior to version 4.5.63.6 allows local attack... |
| CVE-2024-20820 | HIGH | 7.1 | 0.2% | Feb 6, 2024 | Improper input validation in bootloader prior to SMR Feb-2024 Release 1 allows local privileged attackers to cause an Ou... |
| CVE-2024-20819 | HIGH | 7.8 | 0.2% | Feb 6, 2024 | Out-of-bounds Write vulnerabilities in svc1td_vld_plh_ap of libsthmbc.so prior to SMR Feb-2024 Release 1 allows local at... |
| CVE-2024-20818 | HIGH | 7.8 | 0.2% | Feb 6, 2024 | Out-of-bounds Write vulnerabilities in svc1td_vld_elh of libsthmbc.so prior to SMR Feb-2024 Release 1 allows local attac... |
| CVE-2024-20817 | HIGH | 7.8 | 0.2% | Feb 6, 2024 | Out-of-bounds Write vulnerabilities in svc1td_vld_slh of libsthmbc.so prior to SMR Feb-2024 Release 1 allows local attac... |
| CVE-2024-20816 | MEDIUM | 6.5 | 0.4% | Feb 6, 2024 | Improper authentication vulnerability in onCharacteristicWriteRequest in Auto Hotspot prior to SMR Feb-2024 Release 1 al... |
| CVE-2024-20815 | MEDIUM | 6.5 | 0.4% | Feb 6, 2024 | Improper authentication vulnerability in onCharacteristicReadRequest in Auto Hotspot prior to SMR Feb-2024 Release 1 all... |
| CVE-2024-20814 | MEDIUM | 5.5 | 0.2% | Feb 6, 2024 | Out-of-bounds Read in padmd_vld_ac_prog_refine of libpadm.so prior to SMR Feb-2024 Release 1 allows local attackers acce... |
| CVE-2024-20813 | HIGH | 7.8 | 0.2% | Feb 6, 2024 | Out-of-bounds Write in padmd_vld_qtbl of libpadm.so prior to SMR Feb-2024 Release 1 allows local attacker to execute arb... |
| CVE-2024-20812 | HIGH | 7.8 | 0.2% | Feb 6, 2024 | Out-of-bounds Write in padmd_vld_htbl of libpadm.so prior to SMR Feb-2024 Release 1 allows local attacker to execute arb... |
| CVE-2024-20811 | LOW | 3.3 | 0.1% | Feb 6, 2024 | Improper caller verification in GameOptimizer prior to SMR Feb-2024 Release 1 allows local attackers to configure GameOp... |
| CVE-2024-20810 | LOW | 3.3 | 0.2% | Feb 6, 2024 | Implicit intent hijacking vulnerability in Smart Suggestions prior to SMR Feb-2024 Release 1 allows local attackers to g... |
| CVE-2024-22853 | CRITICAL | 9.8 | 4.8% | Feb 6, 2024 | D-LINK Go-RT-AC750 GORTAC750_A1_FW_v101b03 has a hardcoded password for the Alphanetworks account, which allows remote a... |
| CVE-2024-22852 | CRITICAL | 9.8 | 1.1% | Feb 6, 2024 | D-Link Go-RT-AC750 GORTAC750_A1_FW_v101b03 contains a stack-based buffer overflow via the function genacgi_main. This vu... |
| CVE-2024-24112 | CRITICAL | 9.8 | 3.3% | Feb 6, 2024 | xmall v1.1 was discovered to contain a SQL injection vulnerability via the orderDir parameter. |
| CVE-2024-22773 | HIGH | 8.1 | 1.0% | Feb 6, 2024 | Intelbras Action RF 1200 routers 1.2.2 and earlier and Action RG 1200 routers 2.1.7 and earlier expose the Password in C... |
| CVE-2024-0244 | CRITICAL | 9.8 | 1.4% | Feb 6, 2024 | Buffer overflow in CPCA PCFAX number process of Office Multifunction Printers and Laser Printers(*) which may allow an a... |
| CVE-2024-24398 | CRITICAL | 9.8 | 2.3% | Feb 6, 2024 | Directory Traversal vulnerability in Stimulsoft GmbH Stimulsoft Dashboard.JS before v.2024.1.2 allows a remote attacker ... |
| CVE-2024-23049 | CRITICAL | 9.8 | 1.2% | Feb 5, 2024 | An issue in symphony v.3.6.3 and before allows a remote attacker to execute arbitrary code via the log4j component. |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now