2024 CVE Vulnerabilities
39,221 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-34579 | HIGH | 8.5 | 0.3% | Jan 17, 2025 | Fuji Electric Alpha5 SMART is vulnerable to a stack-based buffer overflow, which may allow an attacker to execute arbi... |
| CVE-2024-57785 | MEDIUM | 4.9 | 0.7% | Jan 16, 2025 | Zenitel AlphaWeb XE v11.2.3.10 was discovered to contain a local file inclusion vulnerability via the component amc_uplo... |
| CVE-2024-57784 | MEDIUM | 5.5 | 0.9% | Jan 16, 2025 | An issue in the component /php/script_uploads.php of Zenitel AlphaWeb XE v11.2.3.10 allows attackers to execute a direct... |
| CVE-2024-57704 | HIGH | 8.8 | 0.4% | Jan 16, 2025 | Tenda AC8v4 V16.03.34.06 has a stack overflow vulnerability. Affected by this vulnerability is the function setSchedWifi... |
| CVE-2024-57703 | CRITICAL | 9.8 | 0.5% | Jan 16, 2025 | Tenda AC8v4 V16.03.34.06 has a stack overflow vulnerability. Affected by this vulnerability is the function setSchedWifi... |
| CVE-2024-56144 | MEDIUM | 5.4 | 0.4% | Jan 16, 2025 | librenms is a community-based GPL-licensed network monitoring system. Affected versions are subject to a stored XSS on t... |
| CVE-2024-53553 | CRITICAL | 9.1 | 0.5% | Jan 16, 2025 | An issue in OPEXUS FOIAXPRESS PUBLIC ACCESS LINK v11.1.0 allows attackers to bypass authentication via crafted web reque... |
| CVE-2024-40514 | MEDIUM | 4.6 | 0.3% | Jan 16, 2025 | Insecure Permissions vulnerability in themesebrand Chatvia v.5.3.2 allows a remote attacker to escalate privileges via t... |
| CVE-2024-40513 | MEDIUM | 4.6 | 0.4% | Jan 16, 2025 | An issue in themesebrand Chatvia v.5.3.2 allows a remote attacker to execute arbitrary code via the User profile Upload ... |
| CVE-2024-55511 | HIGH | 7.8 | 0.3% | Jan 16, 2025 | A null pointer dereference vulnerability in Macrium Reflect prior to 8.1.8017 allows a local attacker to cause a system ... |
| CVE-2024-54660 | HIGH | 8.7 | 0.5% | Jan 16, 2025 | A JNDI injection issue was discovered in Cloudera JDBC Connector for Hive before 2.6.26 and JDBC Connector for Impala be... |
| CVE-2024-48460 | MEDIUM | 4.3 | 0.3% | Jan 16, 2025 | An issue in Eugeny Tabby 1.0.213 allows a remote attacker to obtain sensitive information via the server and sends the S... |
| CVE-2024-46450 | HIGH | 8.1 | 0.3% | Jan 16, 2025 | Incorrect access control in Tenda AC1200 Smart Dual-Band WiFi Router Model AC6 v2.0 Firmware v15.03.06.50 allows attacke... |
| CVE-2024-57583 | CRITICAL | 9.8 | 1.5% | Jan 16, 2025 | Tenda AC18 V15.03.05.19 was discovered to contain a command injection vulnerability via the usbName parameter in the for... |
| CVE-2024-57582 | CRITICAL | 9.8 | 0.7% | Jan 16, 2025 | Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the startIP parameter in the formSetPPTPServer fu... |
| CVE-2024-57581 | CRITICAL | 9.8 | 0.7% | Jan 16, 2025 | Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the firewallEn parameter in the formSetFirewallCf... |
| CVE-2024-57580 | CRITICAL | 9.8 | 0.7% | Jan 16, 2025 | Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the devName parameter in the formSetDeviceName fu... |
| CVE-2024-57579 | CRITICAL | 9.8 | 0.7% | Jan 16, 2025 | Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the limitSpeedUp parameter in the formSetClientSt... |
| CVE-2024-57578 | HIGH | 8.8 | 0.5% | Jan 16, 2025 | Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the funcpara1 parameter in the formSetCfm functio... |
| CVE-2024-57577 | MEDIUM | 5.7 | 0.3% | Jan 16, 2025 | Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the speed_dir parameter in the formSetSpeedWan fu... |
| CVE-2024-57575 | CRITICAL | 9.8 | 0.8% | Jan 16, 2025 | Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the ssid parameter in the form_fast_setting_wifi_... |
| CVE-2024-56515 | MEDIUM | 6.5 | 0.6% | Jan 16, 2025 | Matrix Media Repo (MMR) is a highly configurable multi-homeserver media repository for Matrix. If SVG or JPEGXL thumbnai... |
| CVE-2024-56136 | MEDIUM | 5.3 | 0.5% | Jan 16, 2025 | Zulip server provides an open-source team chat that helps teams stay productive and focused. Zulip Server 7.0 and above ... |
| CVE-2024-55954 | HIGH | 8.7 | 0.5% | Jan 16, 2025 | OpenObserve is a cloud-native observability platform. A vulnerability in the user management endpoint `/api/{org_id}/use... |
| CVE-2024-52791 | HIGH | 7.5 | 0.7% | Jan 16, 2025 | Matrix Media Repo (MMR) is a highly configurable multi-homeserver media repository for Matrix. MMR makes requests to oth... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now