2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-10313HIGH8.6iniNet Solutions SpiderControl SCADA PC HMI Editor has a path traversal vulnerability. When the software loads a malici...
CVE-2024-10295HIGH7.5A flaw was found in Gateway. Sending a non-base64 'basic' auth with special characters can cause APICast to incorrectly ...
CVE-2024-48547HIGH8.4Incorrect access control in the firmware update and download processes of DreamCatcher Life v1.8.7 allows attackers to a...
CVE-2024-48546HIGH8.4Incorrect access control in the firmware update and download processes of Wear Sync v1.2.0 allows attackers to access se...
CVE-2024-48545HIGH8.4Incorrect access control in the firmware update and download processes of IVY Smart v4.5.0 allows attackers to access se...
CVE-2024-48544HIGH8.4Incorrect access control in the firmware update and download processes of Sylvania Smart Home v3.0.3 allows attackers to...
CVE-2024-48542HIGH8.4Incorrect access control in the firmware update and download processes of Yamaha Headphones Controller v1.6.7 allows att...
CVE-2024-48541HIGH8.4Incorrect access control in the firmware update and download processes of Ruochan Smart v4.4.7 allows attackers to acces...
CVE-2024-5608HIGH8.1Zohocorp ManageEngine ADAudit Plus versions below 8121 are vulnerable to SQL Injection in the technician reports feature...
CVE-2024-49691HIGH7.6Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WBW Plugins Produc...
CVE-2024-10331HIGH8.8A vulnerability, which was classified as critical, has been found in PHPGurukul Vehicle Record System 1.0. This issue af...
CVE-2024-6049HIGH7.5The web server of Lawo AG vsm LTC Time Sync (vTimeSync) is affected by a "..." (triple dot) path traversal vulnerability...
CVE-2024-40431HIGH8.8A lack of input validation in Realtek SD card reader driver before 10.0.26100.21374 through the implementation of the IO...
CVE-2024-10301HIGH7.2A vulnerability, which was classified as critical, was found in PHPGurukul Medical Card Generation System 1.0. Affected ...
CVE-2024-10300HIGH7.2A vulnerability, which was classified as critical, has been found in PHPGurukul Medical Card Generation System 1.0. This...
CVE-2024-48964HIGH8.8The package Snyk CLI before 1.1294.0 is vulnerable to Code Injection when scanning an untrusted Gradle project. The vuln...
CVE-2024-10299HIGH7.2A vulnerability classified as critical was found in PHPGurukul Medical Card Generation System 1.0. This vulnerability af...
CVE-2024-10298HIGH7.2A vulnerability classified as critical has been found in PHPGurukul Medical Card Generation System 1.0. This affects an ...
CVE-2024-20495HIGH8.6A vulnerability in the Remote Access VPN feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower...
CVE-2024-20494HIGH8.6A vulnerability in the TLS cryptography functionality of Cisco Adaptive Security Appliance (ASA) Software and Cisco Fire...
CVE-2024-20426HIGH8.6A vulnerability in the Internet Key Exchange version 2 (IKEv2) protocol for VPN termination of Cisco Adaptive Security A...
CVE-2024-20412HIGH8.4A vulnerability in Cisco Firepower Threat Defense (FTD) Software for Cisco Firepower 1000, 2100, 3100, and 4200 Series c...
CVE-2024-20408HIGH7.7A vulnerability in the Dynamic Access Policies (DAP) feature of Cisco Adaptive Security Appliance (ASA) Software and Cis...
CVE-2024-20402HIGH8.6A vulnerability in the SSL VPN feature for Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat D...
CVE-2024-20374HIGH7.2A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Software, formerl...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now