2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-10313 | HIGH | 8.6 | 0.5% | Oct 24, 2024 | iniNet Solutions SpiderControl SCADA PC HMI Editor has a path traversal vulnerability. When the software loads a malici... |
| CVE-2024-10295 | HIGH | 7.5 | 0.4% | Oct 24, 2024 | A flaw was found in Gateway. Sending a non-base64 'basic' auth with special characters can cause APICast to incorrectly ... |
| CVE-2024-48547 | HIGH | 8.4 | 0.2% | Oct 24, 2024 | Incorrect access control in the firmware update and download processes of DreamCatcher Life v1.8.7 allows attackers to a... |
| CVE-2024-48546 | HIGH | 8.4 | 0.2% | Oct 24, 2024 | Incorrect access control in the firmware update and download processes of Wear Sync v1.2.0 allows attackers to access se... |
| CVE-2024-48545 | HIGH | 8.4 | 0.2% | Oct 24, 2024 | Incorrect access control in the firmware update and download processes of IVY Smart v4.5.0 allows attackers to access se... |
| CVE-2024-48544 | HIGH | 8.4 | 0.2% | Oct 24, 2024 | Incorrect access control in the firmware update and download processes of Sylvania Smart Home v3.0.3 allows attackers to... |
| CVE-2024-48542 | HIGH | 8.4 | 0.2% | Oct 24, 2024 | Incorrect access control in the firmware update and download processes of Yamaha Headphones Controller v1.6.7 allows att... |
| CVE-2024-48541 | HIGH | 8.4 | 0.2% | Oct 24, 2024 | Incorrect access control in the firmware update and download processes of Ruochan Smart v4.4.7 allows attackers to acces... |
| CVE-2024-5608 | HIGH | 8.1 | 1.3% | Oct 24, 2024 | Zohocorp ManageEngine ADAudit Plus versions below 8121 are vulnerable to SQL Injection in the technician reports feature... |
| CVE-2024-49691 | HIGH | 7.6 | 0.4% | Oct 24, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WBW Plugins Produc... |
| CVE-2024-10331 | HIGH | 8.8 | 0.5% | Oct 24, 2024 | A vulnerability, which was classified as critical, has been found in PHPGurukul Vehicle Record System 1.0. This issue af... |
| CVE-2024-6049 | HIGH | 7.5 | 4.3% | Oct 24, 2024 | The web server of Lawo AG vsm LTC Time Sync (vTimeSync) is affected by a "..." (triple dot) path traversal vulnerability... |
| CVE-2024-40431 | HIGH | 8.8 | 1.3% | Oct 23, 2024 | A lack of input validation in Realtek SD card reader driver before 10.0.26100.21374 through the implementation of the IO... |
| CVE-2024-10301 | HIGH | 7.2 | 0.4% | Oct 23, 2024 | A vulnerability, which was classified as critical, was found in PHPGurukul Medical Card Generation System 1.0. Affected ... |
| CVE-2024-10300 | HIGH | 7.2 | 0.4% | Oct 23, 2024 | A vulnerability, which was classified as critical, has been found in PHPGurukul Medical Card Generation System 1.0. This... |
| CVE-2024-48964 | HIGH | 8.8 | 0.4% | Oct 23, 2024 | The package Snyk CLI before 1.1294.0 is vulnerable to Code Injection when scanning an untrusted Gradle project. The vuln... |
| CVE-2024-10299 | HIGH | 7.2 | 0.4% | Oct 23, 2024 | A vulnerability classified as critical was found in PHPGurukul Medical Card Generation System 1.0. This vulnerability af... |
| CVE-2024-10298 | HIGH | 7.2 | 0.4% | Oct 23, 2024 | A vulnerability classified as critical has been found in PHPGurukul Medical Card Generation System 1.0. This affects an ... |
| CVE-2024-20495 | HIGH | 8.6 | 0.5% | Oct 23, 2024 | A vulnerability in the Remote Access VPN feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower... |
| CVE-2024-20494 | HIGH | 8.6 | 0.5% | Oct 23, 2024 | A vulnerability in the TLS cryptography functionality of Cisco Adaptive Security Appliance (ASA) Software and Cisco Fire... |
| CVE-2024-20426 | HIGH | 8.6 | 0.5% | Oct 23, 2024 | A vulnerability in the Internet Key Exchange version 2 (IKEv2) protocol for VPN termination of Cisco Adaptive Security A... |
| CVE-2024-20412 | HIGH | 8.4 | 0.2% | Oct 23, 2024 | A vulnerability in Cisco Firepower Threat Defense (FTD) Software for Cisco Firepower 1000, 2100, 3100, and 4200 Series c... |
| CVE-2024-20408 | HIGH | 7.7 | 0.4% | Oct 23, 2024 | A vulnerability in the Dynamic Access Policies (DAP) feature of Cisco Adaptive Security Appliance (ASA) Software and Cis... |
| CVE-2024-20402 | HIGH | 8.6 | 0.5% | Oct 23, 2024 | A vulnerability in the SSL VPN feature for Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat D... |
| CVE-2024-20374 | HIGH | 7.2 | 0.8% | Oct 23, 2024 | A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Software, formerl... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now