2024 CVE Vulnerabilities

39,221 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-20532MEDIUM5.5A vulnerability in the API of Cisco ISE could allow an authenticated, remote attacker to read and delete arbitrary files...
CVE-2024-20531MEDIUM6.5A vulnerability in the API of Cisco ISE could allow an authenticated, remote attacker to read arbitrary files on the und...
CVE-2024-20530MEDIUM6.1A vulnerability in the web-based management interface of Cisco ISE could allow an unauthenticated, remote attacker to co...
CVE-2024-20529MEDIUM5.5A vulnerability in the API of Cisco ISE could allow an authenticated, remote attacker to read and delete arbitrary files...
CVE-2024-20527MEDIUM5.5A vulnerability in the API of Cisco ISE could allow an authenticated, remote attacker to read and delete arbitrary files...
CVE-2024-20525MEDIUM6.1A vulnerability in the web-based management interface of Cisco ISE could allow an unauthenticated, remote attacker to co...
CVE-2024-20514MEDIUM5.4A vulnerability in the web-based management interface of Cisco Evolved Programmable Network Manager (EPNM) and Cisco Pri...
CVE-2024-20511MEDIUM6.1A vulnerability in the web-based management interface of Cisco Unified Communications Manager (Unified CM) and Cisco Uni...
CVE-2024-20507MEDIUM6.5A vulnerability in the logging subsystem of Cisco Meeting Management could allow an authenticated, remote attacker to vi...
CVE-2024-20504MEDIUM5.4A vulnerability in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email and Web Manager, ...
CVE-2024-20487MEDIUM5.4A vulnerability in the web-based management interface of Cisco ISE could allow an authenticated, remote attacker to cond...
CVE-2024-20476MEDIUM4.9A vulnerability in the web-based management interface of Cisco ISE could allow an authenticated, remote attacker to bypa...
CVE-2024-20457MEDIUM6.5A vulnerability in the logging component of Cisco Unified Communications Manager IM & Presence Service (Unified CM I...
CVE-2024-20445MEDIUM5.3A vulnerability in the web UI of Cisco Desk Phone 9800 Series, Cisco IP Phone 7800 and 8800 Series, and Cisco Video Phon...
CVE-2024-20371MEDIUM5.3A vulnerability in the access control list (ACL) programming of Cisco Nexus 3550-F Switches could allow an unauthenticat...
CVE-2024-10318MEDIUM5.4A session fixation issue was discovered in the NGINX OpenID Connect reference implementation, where a nonce was not chec...
CVE-2024-35146MEDIUM5.4IBM Maximo Application Suite - Monitor Component 8.10.11, 8.11.8, and 9.0.0 is vulnerable to cross-site scripting. This ...
CVE-2024-10916MEDIUM5.3A vulnerability classified as problematic has been found in D-Link DNS-320, DNS-320LW, DNS-325 and DNS-340L up to 202410...
CVE-2024-10186MEDIUM5.4The Event post plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's events_cal shortcode i...
CVE-2024-8323MEDIUM5.4The Pricing Tables WordPress Plugin – Easy Pricing Tables plugin for WordPress is vulnerable to Stored Cross-Site Script...
CVE-2024-10168MEDIUM5.4The Active Products Tables for WooCommerce. Use constructor to create tables plugin for WordPress is vulnerable to Store...
CVE-2024-10715MEDIUM5.4The MapPress Maps for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Map b...
CVE-2024-9902MEDIUM6.3A flaw was found in Ansible. The ansible-core `user` module can allow an unprivileged user to silently create or replace...
CVE-2024-9681MEDIUM6.5When curl is asked to use HSTS, the expiry time for a subdomain might overwrite a parent domain's cache entry, making it...
CVE-2024-52043MEDIUM5.3Generation of Error Message Containing Sensitive Information in HumHub GmbH & Co. KG - HumHub on Linux allows: Excavatio...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now