2024 CVE Vulnerabilities
39,219 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-24329 | CRITICAL | 9.8 | 6.2% | Jan 30, 2024 | TOTOLINK A3300R V17.0.0cu.557_B20221024 was discovered to contain a command injection vulnerability via the enable param... |
| CVE-2024-24328 | CRITICAL | 9.8 | 6.2% | Jan 30, 2024 | TOTOLINK A3300R V17.0.0cu.557_B20221024 was discovered to contain a command injection vulnerability via the enable param... |
| CVE-2024-24327 | CRITICAL | 9.8 | 1.6% | Jan 30, 2024 | TOTOLINK A3300R V17.0.0cu.557_B20221024 was discovered to contain a command injection vulnerability via the pppoePass pa... |
| CVE-2024-24326 | CRITICAL | 9.8 | 1.6% | Jan 30, 2024 | TOTOLINK A3300R V17.0.0cu.557_B20221024 was discovered to contain a command injection vulnerability via the arpEnable pa... |
| CVE-2024-24325 | CRITICAL | 9.8 | 1.7% | Jan 30, 2024 | TOTOLINK A3300R V17.0.0cu.557_B20221024 was discovered to contain a command injection vulnerability via the enable param... |
| CVE-2024-24324 | CRITICAL | 9.8 | 0.7% | Jan 30, 2024 | TOTOLINK A8000RU v7.1cu.643_B20200521 was discovered to contain a hardcoded password for root stored in /etc/shadow. |
| CVE-2024-1034 | CRITICAL | 9.8 | 0.8% | Jan 30, 2024 | A vulnerability, which was classified as critical, was found in openBI up to 1.0.8. This affects the function uploadFile... |
| CVE-2024-1032 | CRITICAL | 9.8 | 0.8% | Jan 30, 2024 | A vulnerability classified as critical was found in openBI up to 1.0.8. Affected by this vulnerability is the function t... |
| CVE-2024-1061 | CRITICAL | 9.8 | 11.1% | Jan 30, 2024 | The 'HTML5 Video Player' WordPress Plugin, version < 2.5.25 is affected by an unauthenticated SQL injection vulnerabilit... |
| CVE-2024-21488 | CRITICAL | 9.8 | 3.2% | Jan 30, 2024 | Versions of the package network before 0.7.0 are vulnerable to Arbitrary Command Injection due to use of the child_proce... |
| CVE-2024-1027 | CRITICAL | 9.8 | 0.5% | Jan 30, 2024 | A vulnerability, which was classified as critical, was found in SourceCodester Facebook News Feed Like 1.0. Affected is ... |
| CVE-2024-1021 | CRITICAL | 9.8 | 35.0% | Jan 29, 2024 | A vulnerability, which was classified as critical, has been found in Rebuild up to 3.5.5. Affected by this issue is the ... |
| CVE-2024-24141 | CRITICAL | 9.8 | 1.1% | Jan 29, 2024 | Sourcecodester School Task Manager App 1.0 allows SQL Injection via the 'task' parameter. |
| CVE-2024-1009 | CRITICAL | 9.8 | 0.8% | Jan 29, 2024 | A vulnerability was found in SourceCodester Employee Management System 1.0. It has been rated as critical. Affected by t... |
| CVE-2024-23827 | CRITICAL | 9.8 | 0.7% | Jan 29, 2024 | Nginx-UI is a web interface to manage Nginx configurations. The Import Certificate feature allows arbitrary write into t... |
| CVE-2024-23822 | CRITICAL | 9.8 | 1.4% | Jan 29, 2024 | Thruk is a multibackend monitoring webinterface. Prior to 3.12, the Thruk web monitoring application presents a vulnera... |
| CVE-2024-1015 | CRITICAL | 9.8 | 1.4% | Jan 29, 2024 | Remote command execution vulnerability in SE-elektronic GmbH E-DDC3.3 affecting versions 03.07.03 and higher. An attacke... |
| CVE-2024-1001 | CRITICAL | 9.8 | 1.4% | Jan 29, 2024 | A vulnerability classified as critical has been found in Totolink N200RE 9.3.5u.6139_B20201216. Affected is the function... |
| CVE-2024-23790 | CRITICAL | 9.8 | 0.3% | Jan 29, 2024 | Improper Input Validation vulnerability in the upload functionality for user avatars allows functionality misuse due to ... |
| CVE-2024-0996 | CRITICAL | 9.8 | 1.6% | Jan 29, 2024 | A vulnerability classified as critical has been found in Tenda i9 1.0.0.9(4122). This affects the function formSetCfm of... |
| CVE-2024-0995 | CRITICAL | 9.8 | 1.7% | Jan 29, 2024 | A vulnerability was found in Tenda W6 1.0.0.9(4122). It has been rated as critical. Affected by this issue is the functi... |
| CVE-2024-0994 | CRITICAL | 9.8 | 1.7% | Jan 29, 2024 | A vulnerability was found in Tenda W6 1.0.0.9(4122). It has been declared as critical. Affected by this vulnerability is... |
| CVE-2024-0993 | CRITICAL | 9.8 | 1.7% | Jan 29, 2024 | A vulnerability was found in Tenda i6 1.0.0.9(3857). It has been classified as critical. Affected is the function formWi... |
| CVE-2024-0992 | CRITICAL | 9.8 | 1.7% | Jan 29, 2024 | A vulnerability was found in Tenda i6 1.0.0.9(3857) and classified as critical. This issue affects the function formwrlS... |
| CVE-2024-0991 | CRITICAL | 9.8 | 1.7% | Jan 29, 2024 | A vulnerability has been found in Tenda i6 1.0.0.9(3857) and classified as critical. This vulnerability affects the func... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now