2024 CVE Vulnerabilities
39,223 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-39357 | HIGH | 7.2 | 2.4% | Jan 14, 2025 | A stack-based buffer overflow vulnerability exists in the wireless.cgi SetName() functionality of Wavlink AC3000 M33A8.V... |
| CVE-2024-39299 | HIGH | 7.2 | 1.5% | Jan 14, 2025 | A buffer overflow vulnerability exists in the qos.cgi qos_sta_settings() functionality of Wavlink AC3000 M33A8.V5030.210... |
| CVE-2024-39294 | HIGH | 7.2 | 1.5% | Jan 14, 2025 | A buffer overflow vulnerability exists in the adm.cgi set_wzdgw4G() functionality of Wavlink AC3000 M33A8.V5030.210505. ... |
| CVE-2024-39288 | HIGH | 7.2 | 13.5% | Jan 14, 2025 | A buffer overflow vulnerability exists in the internet.cgi set_add_routing() functionality of Wavlink AC3000 M33A8.V5030... |
| CVE-2024-39280 | CRITICAL | 9.1 | 34.2% | Jan 14, 2025 | An external config control vulnerability exists in the nas.cgi set_smb_cfg() functionality of Wavlink AC3000 M33A8.V5030... |
| CVE-2024-39273 | HIGH | 8.1 | 1.0% | Jan 14, 2025 | A firmware update vulnerability exists in the fw_check.sh functionality of Wavlink AC3000 M33A8.V5030.210505. A speciall... |
| CVE-2024-38666 | CRITICAL | 9.1 | 18.9% | Jan 14, 2025 | An external config control vulnerability exists in the openvpn.cgi openvpn_client_setup() functionality of Wavlink AC300... |
| CVE-2024-37357 | HIGH | 7.2 | 9.7% | Jan 14, 2025 | A buffer overflow vulnerability exists in the adm.cgi set_TR069() functionality of Wavlink AC3000 M33A8.V5030.210505. A ... |
| CVE-2024-37186 | HIGH | 7.2 | 22.8% | Jan 14, 2025 | An os command injection vulnerability exists in the adm.cgi set_ledonoff() functionality of Wavlink AC3000 M33A8.V5030.2... |
| CVE-2024-37184 | HIGH | 7.2 | 1.3% | Jan 14, 2025 | A buffer overflow vulnerability exists in the adm.cgi rep_as_bridge() functionality of Wavlink AC3000 M33A8.V5030.210505... |
| CVE-2024-36493 | HIGH | 7.2 | 2.0% | Jan 14, 2025 | A stack-based buffer overflow vulnerability exists in the wireless.cgi set_wifi_basic() functionality of Wavlink AC3000 ... |
| CVE-2024-36295 | HIGH | 7.2 | 20.8% | Jan 14, 2025 | A command execution vulnerability exists in the qos.cgi qos_sta() functionality of Wavlink AC3000 M33A8.V5030.210505. A ... |
| CVE-2024-36290 | CRITICAL | 9.8 | 1.4% | Jan 14, 2025 | A buffer overflow vulnerability exists in the login.cgi Goto_chidx() functionality of Wavlink AC3000 M33A8.V5030.210505.... |
| CVE-2024-36272 | HIGH | 7.2 | 1.3% | Jan 14, 2025 | A buffer overflow vulnerability exists in the usbip.cgi set_info() functionality of Wavlink AC3000 M33A8.V5030.210505. A... |
| CVE-2024-36258 | CRITICAL | 9.8 | 12.4% | Jan 14, 2025 | A stack-based buffer overflow vulnerability exists in the touchlist_sync.cgi touchlistsync() functionality of Wavlink AC... |
| CVE-2024-34544 | HIGH | 7.2 | 8.5% | Jan 14, 2025 | A command injection vulnerability exists in the wireless.cgi AddMac() functionality of Wavlink AC3000 M33A8.V5030.210505... |
| CVE-2024-34166 | CRITICAL | 9.8 | 15.8% | Jan 14, 2025 | An os command injection vulnerability exists in the touchlist_sync.cgi touchlistsync() functionality of Wavlink AC3000 M... |
| CVE-2024-21797 | HIGH | 7.2 | 20.8% | Jan 14, 2025 | A command execution vulnerability exists in the adm.cgi set_TR069() functionality of Wavlink AC3000 M33A8.V5030.210505. ... |
| CVE-2024-7344 | HIGH | 8.2 | 1.0% | Jan 14, 2025 | Howyar UEFI Application "Reloader" (32-bit and 64-bit) is vulnerable to execution of unsigned software in a hardcoded ... |
| CVE-2024-56497 | MEDIUM | 6.7 | 0.6% | Jan 14, 2025 | An improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiMail vers... |
| CVE-2024-55593 | LOW | 2.7 | 0.4% | Jan 14, 2025 | A improper neutralization of special elements used in an sql command ('sql injection') in Fortinet FortiWeb versions 6.3... |
| CVE-2024-55591 | CRITICAL | 9.8 | 98.3% | Jan 14, 2025 | An Authentication Bypass Using an Alternate Path or Channel vulnerability [CWE-288] affecting FortiOS version 7.0.0 thro... |
| CVE-2024-54021 | MEDIUM | 5.8 | 0.8% | Jan 14, 2025 | An Improper Neutralization of CRLF Sequences in HTTP Headers ('http response splitting') vulnerability [CWE-113] in Fort... |
| CVE-2024-52969 | MEDIUM | 6.5 | 0.5% | Jan 14, 2025 | An Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability [CWE-89] in FortiS... |
| CVE-2024-52967 | MEDIUM | 4.8 | 0.3% | Jan 14, 2025 | An improper neutralization of script-related html tags in a web page (basic xss) in Fortinet FortiPortal 6.0.0 through 6... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now