2024 CVE Vulnerabilities

39,219 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-47131HIGH7.8If an attacker tricks a valid user into running Delta Electronics DIAScreen with a file containing malicious code, a sta...
CVE-2024-39605HIGH7.8If an attacker tricks a valid user into running Delta Electronics DIAScreen with a file containing malicious code, a sta...
CVE-2024-39354HIGH7.8If an attacker tricks a valid user into running Delta Electronics DIAScreen with a file containing malicious code, a sta...
CVE-2024-10345HIGH8.7In Helix Core versions prior to 2024.2, an unauthenticated remote Denial of Service (DoS) via the shutdown function was ...
CVE-2024-10344HIGH8.7In Helix Core versions prior to 2024.2, an unauthenticated remote Denial of Service (DoS) via the refuse function was id...
CVE-2024-10314HIGH8.7In Helix Core versions prior to 2024.2, an unauthenticated remote Denial of Service (DoS) via the auto-generation functi...
CVE-2024-11067HIGH7.5The D-Link DSL6740C modem has a Path Traversal Vulnerability, allowing unauthenticated remote attackers to exploit this ...
CVE-2024-11066HIGH7.2The D-Link DSL6740C modem has an OS Command Injection vulnerability, allowing remote attackers with administrator privil...
CVE-2024-11065HIGH7.2The D-Link DSL6740C modem has an OS Command Injection vulnerability, allowing remote attackers with administrator privil...
CVE-2024-11064HIGH7.2The D-Link DSL6740C modem has an OS Command Injection vulnerability, allowing remote attackers with administrator privil...
CVE-2024-11063HIGH7.2The D-Link DSL6740C modem has an OS Command Injection vulnerability, allowing remote attackers with administrator privil...
CVE-2024-11062HIGH7.2The D-Link DSL6740C modem has an OS Command Injection vulnerability, allowing remote attackers with administrator privil...
CVE-2024-11017HIGH8.8Webopac from Grand Vice info does not properly validate uploaded file types, allowing remote attackers with regular priv...
CVE-2024-51845HIGH8.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in richteam Share But...
CVE-2024-48939HIGH7.5Insufficient validation performed on the REST API License file in Paxton Net2 before 6.07.14023.5015 (SR4) enables use o...
CVE-2024-41992HIGH8.8Wi-Fi Alliance wfa_dut (in Wi-Fi Test Suite) through 9.0.0 allows OS command injection via 802.11x frames because the sy...
CVE-2024-11061HIGH8.8A vulnerability classified as critical was found in Tenda AC10 16.03.10.13. Affected by this vulnerability is the functi...
CVE-2024-11058HIGH7.2A vulnerability was found in CodeAstro Real Estate Management System up to 1.0. It has been declared as critical. This v...
CVE-2024-46956HIGH7.8An issue was discovered in psi/zfile.c in Artifex Ghostscript before 10.04.0. Out-of-bounds data access in filenameforal...
CVE-2024-46954HIGH7.8An issue was discovered in decode_utf8 in base/gp_utf8.c in Artifex Ghostscript before 10.04.0. Overlong UTF-8 encoding ...
CVE-2024-46953HIGH7.8An issue was discovered in base/gsdevice.c in Artifex Ghostscript before 10.04.0. An integer overflow when parsing the f...
CVE-2024-46952HIGH7.8An issue was discovered in pdf/pdf_xref.c in Artifex Ghostscript before 10.04.0. There is a buffer overflow during handl...
CVE-2024-46951HIGH7.8An issue was discovered in psi/zcolor.c in Artifex Ghostscript before 10.04.0. An unchecked Implementation pointer in Pa...
CVE-2024-11056HIGH8.8A vulnerability, which was classified as critical, was found in Tenda AC10 16.03.10.13. Affected is the function FUN_004...
CVE-2024-10958HIGH7.3The The WP Photo Album Plus plugin for WordPress is vulnerable to arbitrary shortcode execution via getshortcodedrendere...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now