2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-51296 | HIGH | 8.8 | 0.6% | Oct 30, 2024 | In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary comman... |
| CVE-2024-51257 | HIGH | 8.8 | 0.4% | Oct 30, 2024 | DrayTek Vigor3900 1.5.1.3 allows attackers to inject malicious commands into mainfunction.cgi and execute arbitrary comm... |
| CVE-2024-33700 | HIGH | 7.5 | 0.8% | Oct 30, 2024 | The LevelOne WBR-6012 router firmware R0.40e6 suffers from an input validation vulnerability within its FTP functionalit... |
| CVE-2024-33699 | HIGH | 8.8 | 9.2% | Oct 30, 2024 | The LevelOne WBR-6012 router's web application has a vulnerability in its firmware version R0.40e6, allowing attackers t... |
| CVE-2024-33623 | HIGH | 7.5 | 11.4% | Oct 30, 2024 | A denial of service vulnerability exists in the Web Application functionality of LevelOne WBR-6012 R0.40e6. A specially ... |
| CVE-2024-31152 | HIGH | 7.5 | 17.2% | Oct 30, 2024 | The LevelOne WBR-6012 router with firmware R0.40e6 is vulnerable to improper resource allocation within its web applicat... |
| CVE-2024-28875 | HIGH | 8.1 | 0.7% | Oct 30, 2024 | A security flaw involving hard-coded credentials in LevelOne WBR-6012's web services allows attackers to gain unauthoriz... |
| CVE-2024-28052 | HIGH | 7.5 | 0.7% | Oct 30, 2024 | The WBR-6012 is a wireless SOHO router. It is a low-cost device which functions as an internet gateway for homes and sma... |
| CVE-2024-24777 | HIGH | 8.8 | 7.0% | Oct 30, 2024 | A cross-site request forgery (CSRF) vulnerability exists in the Web Application functionality of the LevelOne WBR-6012 R... |
| CVE-2024-23309 | HIGH | 8.1 | 0.9% | Oct 30, 2024 | The LevelOne WBR-6012 router with firmware R0.40e6 has an authentication bypass vulnerability in its web application due... |
| CVE-2024-51304 | HIGH | 8.8 | 0.6% | Oct 30, 2024 | In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary comman... |
| CVE-2024-9632 | HIGH | 7.8 | 0.9% | Oct 30, 2024 | A flaw was found in the X.org server. Due to improperly tracked allocation size in _XkbSetCompatMap, a local attacker ma... |
| CVE-2024-50509 | HIGH | 8.6 | 1.3% | Oct 30, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Chetan Khandla Woocommer... |
| CVE-2024-50508 | HIGH | 7.5 | 1.0% | Oct 30, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Chetan Khandla Woocommer... |
| CVE-2024-50506 | HIGH | 8.8 | 0.4% | Oct 30, 2024 | Incorrect Privilege Assignment vulnerability in azexo Marketing Automation by AZEXO marketing-automation-by-azexo allows... |
| CVE-2024-50504 | HIGH | 8.8 | 0.5% | Oct 30, 2024 | Incorrect Privilege Assignment vulnerability in webxmedia Bulk Change Role bulk-role-change allows Privilege Escalation.... |
| CVE-2024-10108 | HIGH | 7.2 | 0.4% | Oct 30, 2024 | The WPAdverts – Classifieds Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's ad... |
| CVE-2024-9846 | HIGH | 7.3 | 0.5% | Oct 30, 2024 | The The Enable Shortcodes inside Widgets,Comments and Experts plugin for WordPress is vulnerable to arbitrary shortcode ... |
| CVE-2024-10506 | HIGH | 7.2 | 0.6% | Oct 30, 2024 | A vulnerability classified as critical has been found in code-projects Blood Bank System 1.0. This affects an unknown pa... |
| CVE-2024-10505 | HIGH | 7.2 | 0.7% | Oct 30, 2024 | A vulnerability was found in wuzhicms 4.1.0. It has been classified as critical. Affected is the function add/edit of th... |
| CVE-2024-10502 | HIGH | 8.8 | 0.5% | Oct 30, 2024 | A vulnerability has been found in ESAFENET CDG 5 and classified as critical. This vulnerability affects the function get... |
| CVE-2024-10501 | HIGH | 8.8 | 0.5% | Oct 30, 2024 | A vulnerability, which was classified as critical, was found in ESAFENET CDG 5. This affects the function findById of th... |
| CVE-2024-10500 | HIGH | 8.8 | 0.5% | Oct 30, 2024 | A vulnerability, which was classified as critical, has been found in ESAFENET CDG 5. Affected by this issue is some unkn... |
| CVE-2024-9997 | HIGH | 7.8 | 0.2% | Oct 29, 2024 | A maliciously crafted DWG file when parsed in acdb25.dll through Autodesk AutoCAD can force a Memory Corruption vulnerab... |
| CVE-2024-9996 | HIGH | 7.8 | 0.2% | Oct 29, 2024 | A maliciously crafted DWG file, when parsed in acdb25.dll through Autodesk AutoCAD, may force an Out-of-Bounds Write vul... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now