2024 CVE Vulnerabilities
39,257 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-28809 | HIGH | 8.8 | 0.2% | Sep 30, 2024 | An issue was discovered in Infinera hiT 7300 5.60.50. Cleartext storage of sensitive password in firmware update package... |
| CVE-2024-46549 | HIGH | 7.6 | 0.3% | Sep 30, 2024 | An issue in the TP-Link MQTT Broker and API gateway of TP-Link Kasa KP125M v1.0.3 allows attackers to establish connecti... |
| CVE-2024-46510 | HIGH | 7.6 | 0.3% | Sep 30, 2024 | ESAFENET CDG v5 was discovered to contain a SQL injection vulnerability via the id parameter in the NavigationAjax inter... |
| CVE-2024-46313 | HIGH | 8 | 2.2% | Sep 30, 2024 | TP-Link WR941ND V6 has a stack overflow vulnerability in the ssid parameter in /userRpm/popupSiteSurveyRpm.htm. |
| CVE-2024-46280 | HIGH | 8.8 | 0.3% | Sep 30, 2024 | PIX-LINK LV-WR22 RE3002-P1-01_V117.0 is vulnerable to Improper Access Control. The TELNET service is enabled with weak c... |
| CVE-2024-45772 | HIGH | 8 | 0.6% | Sep 30, 2024 | Deserialization of Untrusted Data vulnerability in Apache Lucene Replicator. This issue affects Apache Lucene's replica... |
| CVE-2024-8458 | HIGH | 8.8 | 0.3% | Sep 30, 2024 | Certain switch models from PLANET Technology have a web application that is vulnerable to Cross-Site Request Forgery (CS... |
| CVE-2024-8454 | HIGH | 7.5 | 0.6% | Sep 30, 2024 | The swctrl service is used to detect and remotely manage PLANET Technology devices. Certain switch models have a Denial-... |
| CVE-2024-6394 | HIGH | 7.5 | 0.6% | Sep 30, 2024 | A Local File Inclusion vulnerability exists in parisneo/lollms-webui versions below v9.8. The vulnerability is due to un... |
| CVE-2024-8452 | HIGH | 7.5 | 0.2% | Sep 30, 2024 | Certain switch models from PLANET Technology only support obsolete algorithms for authentication protocol and encryption... |
| CVE-2024-8451 | HIGH | 7.5 | 0.5% | Sep 30, 2024 | Certain switch models from PLANET Technology have an SSH service that improperly handles insufficiently authenticated co... |
| CVE-2024-8448 | HIGH | 8.8 | 0.5% | Sep 30, 2024 | Certain switch models from PLANET Technology have a hard-coded credential in the specific command-line interface, allowi... |
| CVE-2024-8379 | HIGH | 7.2 | 0.5% | Sep 30, 2024 | The Cost Calculator Builder WordPress plugin before 3.2.29 does not properly sanitise and escape a parameter before usin... |
| CVE-2024-9325 | HIGH | 7.8 | 0.3% | Sep 29, 2024 | A vulnerability classified as critical has been found in Intelbras InControl up to 2.21.56. This affects an unknown part... |
| CVE-2024-9324 | HIGH | 8.8 | 0.6% | Sep 29, 2024 | A vulnerability was found in Intelbras InControl up to 2.21.57. It has been rated as critical. Affected by this issue is... |
| CVE-2024-9319 | HIGH | 8.8 | 0.5% | Sep 29, 2024 | A vulnerability, which was classified as critical, was found in SourceCodester Online Timesheet App 1.0. This affects an... |
| CVE-2024-9317 | HIGH | 8.8 | 0.5% | Sep 28, 2024 | A vulnerability classified as critical was found in SourceCodester Online Eyewear Shop 1.0. Affected by this vulnerabili... |
| CVE-2024-9316 | HIGH | 7.5 | 0.4% | Sep 28, 2024 | A vulnerability classified as critical has been found in code-projects Blood Bank Management System 1.0. Affected is an ... |
| CVE-2024-9315 | HIGH | 8.8 | 0.5% | Sep 28, 2024 | A vulnerability was found in SourceCodester Employee and Visitor Gate Pass Logging System 1.0. It has been rated as crit... |
| CVE-2024-23967 | HIGH | 8 | 0.9% | Sep 28, 2024 | Autel MaxiCharger AC Elite Business C50 WebSocket Base64 Decoding Stack-based Buffer Overflow Remote Code Execution Vuln... |
| CVE-2024-23959 | HIGH | 8 | 0.8% | Sep 28, 2024 | Autel MaxiCharger AC Elite Business C50 BLE AppChargingControl Stack-based Buffer Overflow Remote Code Execution Vulnera... |
| CVE-2024-23958 | HIGH | 8.8 | 0.8% | Sep 28, 2024 | Autel MaxiCharger AC Elite Business C50 BLE Hardcoded Credentials Authentication Bypass Vulnerability. This vulnerabilit... |
| CVE-2024-23935 | HIGH | 7.5 | 0.5% | Sep 28, 2024 | Alpine Halo9 DecodeUTF7 Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows netwo... |
| CVE-2024-23923 | HIGH | 8.8 | 0.8% | Sep 28, 2024 | Alpine Halo9 prh_l2_sar_data_ind Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows network-a... |
| CVE-2024-23957 | HIGH | 8.8 | 1.0% | Sep 28, 2024 | Autel MaxiCharger AC Elite Business C50 DLB_HostHeartBeat Stack-based Buffer Overflow Remote Code Execution Vulnerabilit... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now