2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-51296HIGH8.8In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary comman...
CVE-2024-51257HIGH8.8DrayTek Vigor3900 1.5.1.3 allows attackers to inject malicious commands into mainfunction.cgi and execute arbitrary comm...
CVE-2024-33700HIGH7.5The LevelOne WBR-6012 router firmware R0.40e6 suffers from an input validation vulnerability within its FTP functionalit...
CVE-2024-33699HIGH8.8The LevelOne WBR-6012 router's web application has a vulnerability in its firmware version R0.40e6, allowing attackers t...
CVE-2024-33623HIGH7.5A denial of service vulnerability exists in the Web Application functionality of LevelOne WBR-6012 R0.40e6. A specially ...
CVE-2024-31152HIGH7.5The LevelOne WBR-6012 router with firmware R0.40e6 is vulnerable to improper resource allocation within its web applicat...
CVE-2024-28875HIGH8.1A security flaw involving hard-coded credentials in LevelOne WBR-6012's web services allows attackers to gain unauthoriz...
CVE-2024-28052HIGH7.5The WBR-6012 is a wireless SOHO router. It is a low-cost device which functions as an internet gateway for homes and sma...
CVE-2024-24777HIGH8.8A cross-site request forgery (CSRF) vulnerability exists in the Web Application functionality of the LevelOne WBR-6012 R...
CVE-2024-23309HIGH8.1The LevelOne WBR-6012 router with firmware R0.40e6 has an authentication bypass vulnerability in its web application due...
CVE-2024-51304HIGH8.8In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary comman...
CVE-2024-9632HIGH7.8A flaw was found in the X.org server. Due to improperly tracked allocation size in _XkbSetCompatMap, a local attacker ma...
CVE-2024-50509HIGH8.6Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Chetan Khandla Woocommer...
CVE-2024-50508HIGH7.5Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Chetan Khandla Woocommer...
CVE-2024-50506HIGH8.8Incorrect Privilege Assignment vulnerability in azexo Marketing Automation by AZEXO marketing-automation-by-azexo allows...
CVE-2024-50504HIGH8.8Incorrect Privilege Assignment vulnerability in webxmedia Bulk Change Role bulk-role-change allows Privilege Escalation....
CVE-2024-10108HIGH7.2The WPAdverts – Classifieds Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's ad...
CVE-2024-9846HIGH7.3The The Enable Shortcodes inside Widgets,Comments and Experts plugin for WordPress is vulnerable to arbitrary shortcode ...
CVE-2024-10506HIGH7.2A vulnerability classified as critical has been found in code-projects Blood Bank System 1.0. This affects an unknown pa...
CVE-2024-10505HIGH7.2A vulnerability was found in wuzhicms 4.1.0. It has been classified as critical. Affected is the function add/edit of th...
CVE-2024-10502HIGH8.8A vulnerability has been found in ESAFENET CDG 5 and classified as critical. This vulnerability affects the function get...
CVE-2024-10501HIGH8.8A vulnerability, which was classified as critical, was found in ESAFENET CDG 5. This affects the function findById of th...
CVE-2024-10500HIGH8.8A vulnerability, which was classified as critical, has been found in ESAFENET CDG 5. Affected by this issue is some unkn...
CVE-2024-9997HIGH7.8A maliciously crafted DWG file when parsed in acdb25.dll through Autodesk AutoCAD can force a Memory Corruption vulnerab...
CVE-2024-9996HIGH7.8A maliciously crafted DWG file, when parsed in acdb25.dll through Autodesk AutoCAD, may force an Out-of-Bounds Write vul...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now