2024 CVE Vulnerabilities
39,223 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-40770 | HIGH | 7.5 | 0.5% | Sep 17, 2024 | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15. A non-privilege... |
| CVE-2024-27879 | HIGH | 7.5 | 0.8% | Sep 17, 2024 | The issue was addressed with improved bounds checks. This issue is fixed in iOS 17.7 and iPadOS 17.7, iOS 18 and iPadOS ... |
| CVE-2024-27874 | HIGH | 7.5 | 0.7% | Sep 17, 2024 | This issue was addressed through improved state management. This issue is fixed in iOS 18 and iPadOS 18. A remote attack... |
| CVE-2024-27795 | HIGH | 7.5 | 0.5% | Sep 17, 2024 | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15. A camera extens... |
| CVE-2024-45416 | HIGH | 8.1 | 0.6% | Sep 16, 2024 | The HTTPD binary in multiple ZTE routers has a local file inclusion vulnerability in session_init function. The session ... |
| CVE-2024-45413 | HIGH | 8.1 | 0.4% | Sep 16, 2024 | The HTTPD binary in multiple ZTE routers has a stack-based buffer overflow vulnerability in rsa_decrypt function. This f... |
| CVE-2024-42798 | HIGH | 7.6 | 0.4% | Sep 16, 2024 | An Incorrect Access Control vulnerability was found in /music/index.php?page=user_list and /music/index.php?page=edit_us... |
| CVE-2024-34543 | HIGH | 7.8 | 0.1% | Sep 16, 2024 | Improper access control in Intel(R) RAID Web Console software for all versions may allow an authenticated user to potent... |
| CVE-2024-34153 | HIGH | 7.8 | 0.1% | Sep 16, 2024 | Uncontrolled search path element in Intel(R) RAID Web Console software for all versions may allow an authenticated user ... |
| CVE-2024-23599 | HIGH | 8.3 | 0.1% | Sep 16, 2024 | Race condition in Seamless Firmware Updates for some Intel(R) reference platforms may allow a privileged user to potenti... |
| CVE-2024-21871 | HIGH | 7.5 | 0.2% | Sep 16, 2024 | Improper input validation in UEFI firmware for some Intel(R) Processors may allow a privileged user to potentially enabl... |
| CVE-2024-21829 | HIGH | 8.7 | 0.2% | Sep 16, 2024 | Improper input validation in UEFI firmware error handler for some Intel(R) Processors may allow a privileged user to pot... |
| CVE-2024-21781 | HIGH | 7.2 | 0.2% | Sep 16, 2024 | Improper input validation in UEFI firmware for some Intel(R) Processors may allow a privileged user to enable informatio... |
| CVE-2024-8752 | HIGH | 7.5 | 11.8% | Sep 16, 2024 | The Windows version of WebIQ 2.15.9 is affected by a directory traversal vulnerability that allows remote attackers to r... |
| CVE-2024-46937 | HIGH | 7.5 | 0.5% | Sep 16, 2024 | An improper access control (IDOR) vulnerability in the /api-selfportal/get-info-token-properties endpoint in MFASOFT Sec... |
| CVE-2024-46424 | HIGH | 7.5 | 0.6% | Sep 16, 2024 | TOTOLINK AC1200 T8 v4.1.5cu.861_B20230220 has a buffer overflow vulnerability in the UploadCustomModule function, which ... |
| CVE-2024-45696 | HIGH | 8.8 | 0.6% | Sep 16, 2024 | Certain models of D-Link wireless routers contain hidden functionality. By sending specific packets to the web service, ... |
| CVE-2024-39613 | HIGH | 7.8 | 0.3% | Sep 16, 2024 | Mattermost Desktop App versions <=5.8.0 fail to specify an absolute path when searching the cmd.exe file, which allows ... |
| CVE-2024-8779 | HIGH | 8.8 | 0.5% | Sep 16, 2024 | OMFLOW from The SYSCOM Group does not properly restrict access to the system settings modification functionality, allowi... |
| CVE-2024-8777 | HIGH | 7.5 | 0.5% | Sep 16, 2024 | OMFLOW from The SYSCOM Group has an information leakage vulnerability, allowing unauthorized remote attackers to read ar... |
| CVE-2024-46943 | HIGH | 7.5 | 0.6% | Sep 15, 2024 | An issue was discovered in OpenDaylight Authentication, Authorization and Accounting (AAA) through 0.19.3. A rogue contr... |
| CVE-2024-8876 | HIGH | 7.5 | 0.8% | Sep 15, 2024 | A vulnerability, which was classified as problematic, has been found in xiaohe4966 TpMeCMS up to 1.3.3.1. Affected by th... |
| CVE-2024-46938 | HIGH | 7.5 | 46.1% | Sep 15, 2024 | An issue was discovered in Sitecore Experience Platform (XP), Experience Manager (XM), and Experience Commerce (XC) 8.0 ... |
| CVE-2024-8869 | HIGH | 8.1 | 1.7% | Sep 15, 2024 | A vulnerability classified as critical has been found in TOTOLINK A720R 4.1.5. Affected is the function exportOvpn. The ... |
| CVE-2024-8864 | HIGH | 8.8 | 0.8% | Sep 15, 2024 | A vulnerability has been found in composiohq composio up to 0.5.6 and classified as critical. Affected by this vulnerabi... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now