2024 CVE Vulnerabilities
39,257 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-45750 | HIGH | 7.3 | 0.5% | Sep 25, 2024 | An issue in TheGreenBow Windows Standard VPN Client 6.87.108 (and older), Windows Enterprise VPN Client 6.87.109 (and ol... |
| CVE-2024-8996 | HIGH | 7.8 | 0.3% | Sep 25, 2024 | Unquoted Search Path or Element vulnerability in Grafana Agent (Flow mode) on Windows allows Privilege Escalation from L... |
| CVE-2024-8975 | HIGH | 7.8 | 0.3% | Sep 25, 2024 | Unquoted Search Path or Element vulnerability in Grafana Alloy on Windows allows Privilege Escalation from Local User to... |
| CVE-2024-44678 | HIGH | 8 | 1.3% | Sep 25, 2024 | Gigastone TR1 Travel Router R101 v1.0.2 is vulnerable to Command Injection. This allows an authenticated attacker to exe... |
| CVE-2024-41708 | HIGH | 7.5 | 0.4% | Sep 25, 2024 | An issue was discovered in AdaCore ada_web_services 20.0 allows an attacker to escalate privileges and steal sessions vi... |
| CVE-2024-20480 | HIGH | 8.6 | 0.6% | Sep 25, 2024 | A vulnerability in the DHCP Snooping feature of Cisco IOS XE Software on Software-Defined Access (SD-Access) fabric edge... |
| CVE-2024-20467 | HIGH | 8.6 | 1.0% | Sep 25, 2024 | A vulnerability in the implementation of the IPv4 fragmentation reassembly code in Cisco IOS XE Software could allow an ... |
| CVE-2024-20464 | HIGH | 8.6 | 0.6% | Sep 25, 2024 | A vulnerability in the Protocol Independent Multicast (PIM) feature of Cisco IOS XE Software could allow an unauthentica... |
| CVE-2024-20455 | HIGH | 8.6 | 0.7% | Sep 25, 2024 | A vulnerability in the process that classifies traffic that is going to the Unified Threat Defense (UTD) component of Ci... |
| CVE-2024-20437 | HIGH | 8.8 | 0.3% | Sep 25, 2024 | A vulnerability in the web-based management interface of Cisco IOS XE Software could allow an unauthenticated, remote at... |
| CVE-2024-20436 | HIGH | 7.5 | 0.9% | Sep 25, 2024 | A vulnerability in the HTTP Server feature of Cisco IOS XE Software when the Telephony Service feature is enabled could ... |
| CVE-2024-20433 | HIGH | 7.5 | 0.6% | Sep 25, 2024 | A vulnerability in the Resource Reservation Protocol (RSVP) feature of Cisco IOS Software and Cisco IOS XE Software coul... |
| CVE-2024-20350 | HIGH | 8.1 | 0.4% | Sep 25, 2024 | A vulnerability in the SSH server of Cisco Catalyst Center, formerly Cisco DNA Center, could allow an unauthenticated, r... |
| CVE-2024-44825 | HIGH | 7.5 | 0.9% | Sep 25, 2024 | Directory Traversal vulnerability in Centro de Tecnologia da Informaco Renato Archer InVesalius3 v3.1.99995 allows attac... |
| CVE-2024-46461 | HIGH | 8 | 0.6% | Sep 25, 2024 | VLC media player 3.0.20 and earlier is vulnerable to denial of service through an integer overflow which could be trigge... |
| CVE-2024-43959 | HIGH | 7.1 | 0.3% | Sep 25, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Themepoints Testim... |
| CVE-2024-22893 | HIGH | 7.5 | 0.4% | Sep 25, 2024 | OpenSlides 4.0.15 verifies passwords by comparing password hashes using a function with content-dependent runtime. This ... |
| CVE-2024-22892 | HIGH | 7.5 | 0.2% | Sep 25, 2024 | OpenSlides 4.0.15 was discovered to be using a weak hashing algorithm to store passwords. |
| CVE-2024-8316 | HIGH | 7.8 | 0.2% | Sep 25, 2024 | In Progress Telerik UI for WPF versions prior to 2024 Q3 (2024.3.924), a code execution attack is possible through an in... |
| CVE-2024-7679 | HIGH | 7.8 | 0.7% | Sep 25, 2024 | In Progress Telerik UI for WinForms versions prior to 2024 Q3 (2024.3.924), a command injection attack is possible throu... |
| CVE-2024-6594 | HIGH | 7.5 | 0.5% | Sep 25, 2024 | Improper Handling of Exceptional Conditions vulnerability in the WatchGuard Single Sign-On Client on Windows causes the ... |
| CVE-2024-7481 | HIGH | 8.8 | 0.3% | Sep 25, 2024 | Improper verification of cryptographic signature during installation of a Printer driver via the TeamViewer_service.exe ... |
| CVE-2024-7479 | HIGH | 8.8 | 0.4% | Sep 25, 2024 | Improper verification of cryptographic signature during installation of a VPN driver via the TeamViewer_service.exe comp... |
| CVE-2024-45817 | HIGH | 7.3 | 0.5% | Sep 25, 2024 | In x86's APIC (Advanced Programmable Interrupt Controller) architecture, error conditions are reported in a status regis... |
| CVE-2024-31146 | HIGH | 7.5 | 0.2% | Sep 25, 2024 | When multiple devices share resources and one of them is to be passed through to a guest, security of the entire system ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now