2024 CVE Vulnerabilities

39,257 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-48792HIGH7.5An issue in Hideez com.hideez 2.7.8.3 allows a remote attacker to obtain sensitive information via the firmware update p...
CVE-2024-48791HIGH7.5An issue in Plug n Play Camera com.starvedia.mCamView.zwave 5.5.1 allows a remote attacker to obtain sensitive informati...
CVE-2024-48789HIGH7.5An issue in INATRONIC com.inatronic.drivedeck.home 2.6.23 allows a remote attacker to obtain sensitve information via th...
CVE-2024-47831HIGH7.5Next.js is a React Framework for the Web. Cersions on the 10.x, 11.x, 12.x, 13.x, and 14.x branches before version 14.2....
CVE-2024-48799HIGH7.5An issue in LOREX TECHNOLOGY INC com.lorexcorp.lorexping 1.4.22 allows a remote attacker to obtain sensitive information...
CVE-2024-48798HIGH7.5An issue in Hubble Connected (com.hubbleconnected.vervelife) 2.00.81 allows a remote attacker to obtain sensitive inform...
CVE-2024-48797HIGH7.5An issue in PCS Engineering Preston Cinema (com.prestoncinema.app) 0.2.0 allows a remote attacker to obtain sensitive in...
CVE-2024-48796HIGH7.5An issue in EQUES com.eques.plug 1.0.1 allows a remote attacker to obtain sensitive information via the firmware update ...
CVE-2024-45733HIGH8.8In Splunk Enterprise for Windows versions below 9.2.3 and 9.1.6, a low-privileged user that does not hold the "admin" or...
CVE-2024-45731HIGH8In Splunk Enterprise for Windows versions below 9.3.1, 9.2.3, and 9.1.6, a low-privileged user that does not hold the "a...
CVE-2024-9823HIGH7.5There exists a security vulnerability in Jetty's DosFilter which can be exploited by unauthorized users to cause remote ...
CVE-2024-48259HIGH7.3Cloudlog 2.6.15 allows Oqrs.php request_form SQL injection via station_id or callsign.
CVE-2024-48249HIGH7.3Wavelog 1.8.5 allows Gridmap_model.php get_band_confirmed SQL injection via band, sat, propagation, or mode.
CVE-2024-7847HIGH7.8VULNERABILITY DETAILS Rockwell Automation used the latest versions of the CVSS scoring system to assess the following v...
CVE-2024-9139HIGH8.6The affected product permits OS command injection through improperly restricted commands, potentially allowing attackers...
CVE-2024-43701HIGH7.8Software installed and run as a non-privileged user may conduct GPU system calls to read and write freed physical memory...
CVE-2024-38863HIGH7.5Exposure of CSRF tokens in query parameters on specific requests in Checkmk GmbH's Checkmk versions <2.3.0p18, <2.2.0p35...
CVE-2024-9922HIGH7.5The Team+ from TEAMPLUS TECHNOLOGY does not properly validate a specific page parameter, allowing unauthenticated remote...
CVE-2024-9918HIGH7.2A vulnerability has been found in HuangDou UTCMS V9 and classified as critical. This vulnerability affects the function ...
CVE-2024-8070HIGH8.5CWE-312: Cleartext Storage of Sensitive Information vulnerability exists that exposes test credentials in the firmware b...
CVE-2024-9915HIGH8.8A vulnerability classified as critical was found in D-Link DIR-619L B1 2.06. Affected by this vulnerability is the funct...
CVE-2024-9914HIGH8.8A vulnerability classified as critical has been found in D-Link DIR-619L B1 2.06. Affected is the function formSetWizard...
CVE-2024-9913HIGH8.8A vulnerability was found in D-Link DIR-619L B1 2.06. It has been rated as critical. This issue affects the function for...
CVE-2024-9912HIGH8.8A vulnerability was found in D-Link DIR-619L B1 2.06. It has been declared as critical. This vulnerability affects the f...
CVE-2024-9911HIGH8.8A vulnerability was found in D-Link DIR-619L B1 2.06. It has been classified as critical. This affects the function form...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now