2024 CVE Vulnerabilities

39,224 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-57226HIGH8Linksys E7350 1.1.00.032 was discovered to contain a command injection vulnerability via the iface parameter in the vif_...
CVE-2024-57225CRITICAL9.8Linksys E7350 1.1.00.032 was discovered to contain a command injection vulnerability via the devname parameter in the re...
CVE-2024-57224CRITICAL9.8Linksys E7350 1.1.00.032 was discovered to contain a command injection vulnerability via the ifname parameter in the apc...
CVE-2024-57223CRITICAL9.8Linksys E7350 1.1.00.032 was discovered to contain a command injection vulnerability via the ifname parameter in the apc...
CVE-2024-57222MEDIUM6.3Linksys E7350 1.1.00.032 was discovered to contain a command injection vulnerability via the ifname parameter in the apc...
CVE-2024-54687MEDIUM6.1Vtiger CRM v.6.1 and before is vulnerable to Cross Site Scripting (XSS) via the Documents module and function uploadAndS...
CVE-2024-57214MEDIUM6.3TOTOLINK A6000R V1.0.1-B20201211.2000 was discovered to contain a command injection vulnerability via the devname parame...
CVE-2024-57213MEDIUM6.3TOTOLINK A6000R V1.0.1-B20201211.2000 was discovered to contain a command injection vulnerability via the newpasswd para...
CVE-2024-57212MEDIUM5.1TOTOLINK A6000R V1.0.1-B20201211.2000 was discovered to contain a command injection vulnerability via the opmode paramet...
CVE-2024-57211HIGH8TOTOLINK A6000R V1.0.1-B20201211.2000 was discovered to contain a command injection vulnerability via the modifyOne para...
CVE-2024-54849MEDIUM5.9An issue in CP Plus CP-VNR-3104 B3223P22C02424 allows attackers to obtain the second RSA private key and access sensitiv...
CVE-2024-54848HIGH7.4Improper handling and storage of certificates in CP Plus CP-VNR-3104 B3223P22C02424 allow attackers to decrypt communica...
CVE-2024-54847MEDIUM5.9An issue in CP Plus CP-VNR-3104 B3223P22C02424 allows attackers to access the Diffie-Hellman (DH) parameters and access ...
CVE-2024-54846MEDIUM5.9An issue in CP Plus CP-VNR-3104 B3223P22C02424 allows attackers to obtain the EC private key and access sensitive data o...
CVE-2024-56511CRITICAL9.8DataEase is an open source data visualization analysis tool. Prior to 2.10.4, there is a flaw in the authentication in t...
CVE-2024-50807MEDIUM6.1Trippo Responsive Filemanager 9.14.0 is vulnerable to Cross Site Scripting (XSS) via file upload using the svg and pdf e...
CVE-2024-46210HIGH7.2An arbitrary file upload vulnerability in the MediaPool module of Redaxo CMS v5.17.1 allows attackers to execute arbitra...
CVE-2024-29971CRITICAL9.8Scontain SCONE 5.8.0 has an interface vulnerability that leads to state corruption via injected signals.
CVE-2024-29970CRITICAL9.8Fortanix Enclave OS 3.36.1941-EM has an interface vulnerability that leads to state corruption via injected signals.
CVE-2024-25371HIGH7.5Gramine before a390e33e16ed374a40de2344562a937f289be2e1 suffers from an Interface vulnerability due to mismatching SW si...
CVE-2024-57687CRITICAL9.8An OS Command Injection vulnerability was found in /landrecordsys/admin/dashboard.php in PHPGurukul Land Record System v...
CVE-2024-57686CRITICAL9.8A Cross Site Scripting (XSS) vulnerability was found in /landrecordsys/admin/contactus.php in PHPGurukul Land Record Sys...
CVE-2024-41787HIGH8.1IBM Engineering Requirements Management DOORS Next 7.0.2 and 7.0.3 could allow a remote attacker to bypass security rest...
CVE-2024-57823MEDIUM5.5In Raptor RDF Syntax Library through 2.0.16, there is an integer underflow when normalizing a URI with the turtle parser...
CVE-2024-57822MEDIUM5.5In Raptor RDF Syntax Library through 2.0.16, there is a heap-based buffer over-read when parsing triples with the nquads...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now