2024 CVE Vulnerabilities
39,219 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-50323 | HIGH | 7.8 | 0.7% | Nov 12, 2024 | SQL injection in Ivanti Endpoint Manager before 2024 November Security Update or 2022 SU6 November Security Update allow... |
| CVE-2024-50322 | HIGH | 7.8 | 6.0% | Nov 12, 2024 | Path traversal in Ivanti Endpoint Manager before 2024 November Security Update or 2022 SU6 November Security Update allo... |
| CVE-2024-50321 | HIGH | 7.5 | 1.1% | Nov 12, 2024 | An infinite loop in Ivanti Avalanche before 6.4.6 allows a remote unauthenticated attacker to cause a denial of service. |
| CVE-2024-50320 | HIGH | 7.5 | 31.2% | Nov 12, 2024 | An infinite loop in Ivanti Avalanche before 6.4.6 allows a remote unauthenticated attacker to cause a denial of service. |
| CVE-2024-50319 | HIGH | 7.5 | 1.1% | Nov 12, 2024 | An infinite loop in Ivanti Avalanche before 6.4.6 allows a remote unauthenticated attacker to cause a denial of service. |
| CVE-2024-50318 | HIGH | 7.5 | 1.1% | Nov 12, 2024 | A null pointer dereference in Ivanti Avalanche before 6.4.6 allows a remote unauthenticated attacker to cause a denial o... |
| CVE-2024-50317 | HIGH | 7.5 | 1.1% | Nov 12, 2024 | A null pointer dereference in Ivanti Avalanche before 6.4.6 allows a remote unauthenticated attacker to cause a denial o... |
| CVE-2024-47907 | HIGH | 7.5 | 1.5% | Nov 12, 2024 | A stack-based buffer overflow in IPsec of Ivanti Connect Secure before version 22.7R2.3 allows a remote unauthenticated ... |
| CVE-2024-47906 | HIGH | 7.8 | 0.2% | Nov 12, 2024 | Excessive binary privileges in Ivanti Connect Secure before version 22.7R2.3 (Not Applicable to 9.1Rx) and Ivanti Policy... |
| CVE-2024-11007 | HIGH | 7.2 | 1.7% | Nov 12, 2024 | Command injection in Ivanti Connect Secure before version 22.7R2.1 (Not Applicable to 9.1Rx) and Ivanti Policy Secure be... |
| CVE-2024-51564 | HIGH | 7.5 | 0.4% | Nov 12, 2024 | A guest can trigger an infinite loop in the hda audio driver. |
| CVE-2024-45289 | HIGH | 7.5 | 0.3% | Nov 12, 2024 | The fetch(3) library uses environment variables for passing certain information, including the revocation file pathname.... |
| CVE-2024-42442 | HIGH | 8.8 | 0.8% | Nov 12, 2024 | APTIOV contains a vulnerability in the BIOS where a user or attacker may cause an improper restriction of operations wit... |
| CVE-2024-37365 | HIGH | 7.8 | 0.2% | Nov 12, 2024 | A remote code execution vulnerability exists in the affected product. The vulnerability allows users to save projects wi... |
| CVE-2024-33658 | HIGH | 7.8 | 0.2% | Nov 12, 2024 | APTIOV contains a vulnerability in BIOS where an attacker may cause an Improper Restriction of Operations within the Bou... |
| CVE-2024-2315 | HIGH | 7.1 | 0.1% | Nov 12, 2024 | APTIOV contains a vulnerability in BIOS where may cause Improper Access Control by a local attacker. Successful exploita... |
| CVE-2024-11127 | HIGH | 8.8 | 0.5% | Nov 12, 2024 | A vulnerability was found in code-projects Job Recruitment up to 1.0. It has been declared as critical. Affected by this... |
| CVE-2024-11124 | HIGH | 7.2 | 0.4% | Nov 12, 2024 | A vulnerability has been found in TimGeyssens UIOMatic 5 and classified as critical. This vulnerability affects unknown ... |
| CVE-2024-50572 | HIGH | 8.6 | 0.6% | Nov 12, 2024 | A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All versions < V8.2), RUGGEDCOM... |
| CVE-2024-50310 | HIGH | 8.7 | 0.5% | Nov 12, 2024 | A vulnerability has been identified in SIMATIC CP 1543-1 V4.0 (6GK7543-1AX10-0XE0) (All versions >= V4.0.44 < V4.0.50). ... |
| CVE-2024-47942 | HIGH | 7.3 | 0.2% | Nov 12, 2024 | A vulnerability has been identified in Solid Edge SE2024 (All versions < V224.0 Update 9). The affected applications suf... |
| CVE-2024-47941 | HIGH | 7.8 | 0.2% | Nov 12, 2024 | A vulnerability has been identified in Solid Edge SE2024 (All versions < V224.0 Update 9). The affected applications con... |
| CVE-2024-47940 | HIGH | 7.8 | 0.2% | Nov 12, 2024 | A vulnerability has been identified in Solid Edge SE2024 (All versions < V224.0 Update 9). The affected applications con... |
| CVE-2024-47783 | HIGH | 7.8 | 0.1% | Nov 12, 2024 | A vulnerability has been identified in SIPORT (All versions < V3.4.0). The affected application improperly assigns file ... |
| CVE-2024-46892 | HIGH | 8.1 | 0.3% | Nov 12, 2024 | A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 3). The affected application does not p... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now