2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-13945HIGH8.4Stored Absolute Path Traversal vulnerabilities in ASPECT could expose sensitive data if administrator credentials becom...
CVE-2024-51553HIGH7Predictable filename vulnerabilities in ASPECT may expose sensitive information to a potential attacker if administrator...
CVE-2024-51552HIGH7.1Weak password storage vulnerabilities exist in ASPECT if administrator credentials become compromisedThis issue affects ...
CVE-2024-48848HIGH7Large content vulnerabilities are present in ASPECT exposing a device to disk overutilization on a system if administrat...
CVE-2024-41199HIGH7.2An issue in Ocuco Innovation - JOBMANAGER.EXE v2.10.24.16 allows attackers to bypass authentication and escalate privile...
CVE-2024-40462HIGH7.8An issue in Ocuco Innovation v.2.10.24.51 allows a local attacker to escalate privileges via the SETTINGSVATIGATOR.EXE c...
CVE-2024-40461HIGH7.8An issue in Ocuco Innovation v.2.10.24.51 allows a local attacker to escalate privileges via the STOCKORDERENTRY.EXE com...
CVE-2024-40460HIGH7.8An issue in Ocuco Innovation v.2.10.24.51 allows a local attacker to escalate privileges via the JOBENTRY.EXE
CVE-2024-40459HIGH7.8An issue in Ocuco Innovation APPMANAGER.EXE v.2.10.24.51 allows a local attacker to escalate privileges via the applicat...
CVE-2024-40458HIGH7.8An issue in Ocuco Innovation Tracking.exe v.2.10.24.51 allows a local attacker to escalate privileges via the modificati...
CVE-2024-13957HIGH7.6SSRF Server Side Request Forgery vulnerabilities exist in ASPECT if administrator credentials become compromisedThis iss...
CVE-2024-13956HIGH8.8SSL Verification Bypass vulnerabilities exist in ASPECT if administrator credentials become compromisedThis issue affect...
CVE-2024-13952HIGH8.7Predictable filename vulnerabilities in ASPECT may expose sensitive information to a potential attacker if administrator...
CVE-2024-13951HIGH7.6One way hash with predictable salt vulnerabilities in ASPECT may expose sensitive information to a potential attackerThi...
CVE-2024-13948HIGH7.3Windows permissions for ASPECT configuration toolsets are not fully secured allow-ing exposure of configuration informat...
CVE-2024-13947HIGH7.1Device commissioning parameters in ASPECT may be modified by an external source if administrative credentials become com...
CVE-2024-13946HIGH7.1DLL's are not digitally signed when loaded in ASPECT's configuration toolset exposing the application to binary planting...
CVE-2024-9639HIGH8Remote Code Execution vulnerabilities are present in ASPECT if session administra-tor credentials become compromised. Th...
CVE-2024-52874HIGH8.8In Infoblox NETMRI before 7.6.1, authenticated users can perform SQL injection attacks.
CVE-2024-13931HIGH7.5Relative Path Traversal vulnerabilities in ASPECT allow access to file resources if session administrator credentials be...
CVE-2024-13929HIGH7.5Servlet injection vulnerabilities in ASPECT allow remote code execution if session administrator credentials become comp...
CVE-2024-13928HIGH7.5SQL injection vulnerabilities in ASPECT allow unintended access and manipulation of database repositories if session adm...
CVE-2024-48850HIGH7.5Absolute File Traversal vulnerabilities in ASPECT allows access and modification of unintended resources. This issue aff...
CVE-2024-25010HIGH8.8Ericsson RAN Compute and Site Controller 6610 contains in certain configurations a high severity vulnerability where imp...
CVE-2024-56429HIGH7.7itech iLabClient 3.7.1 relies on the hard-coded YngAYdgAE/kKZYu2F2wm6w== key (found in iLabClient.jar) for local users t...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now