2024 CVE Vulnerabilities
39,257 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-37288 | HIGH | 8.8 | 1.0% | Sep 9, 2024 | A deserialization issue in Kibana can lead to arbitrary code execution when Kibana attempts to parse a YAML document con... |
| CVE-2024-8580 | HIGH | 8.1 | 1.3% | Sep 8, 2024 | A vulnerability classified as critical was found in TOTOLINK AC1200 T8 4.1.5cu.861_B20230220. This vulnerability affects... |
| CVE-2024-8578 | HIGH | 8.8 | 1.1% | Sep 8, 2024 | A vulnerability was found in TOTOLINK AC1200 T8 4.1.5cu.861_B20230220. It has been rated as critical. Affected by this i... |
| CVE-2024-8577 | HIGH | 8.8 | 1.1% | Sep 8, 2024 | A vulnerability was found in TOTOLINK AC1200 T8 and AC1200 T10 4.1.5cu.861_B20230220/4.1.8cu.5207. It has been declared ... |
| CVE-2024-8576 | HIGH | 8.8 | 1.1% | Sep 8, 2024 | A vulnerability was found in TOTOLINK AC1200 T8 and AC1200 T10 4.1.5cu.861_B20230220/4.1.8cu.5207. It has been classifie... |
| CVE-2024-8575 | HIGH | 8.8 | 1.1% | Sep 8, 2024 | A vulnerability was found in TOTOLINK AC1200 T8 4.1.5cu.861_B20230220 and classified as critical. This issue affects the... |
| CVE-2024-42343 | HIGH | 7.5 | 0.3% | Sep 8, 2024 | Loway - CWE-204: Observable Response Discrepancy |
| CVE-2024-8574 | HIGH | 8.8 | 3.1% | Sep 8, 2024 | A vulnerability has been found in TOTOLINK AC1200 T8 4.1.5cu.861_B20230220 and classified as critical. This vulnerabilit... |
| CVE-2024-8573 | HIGH | 8.8 | 1.4% | Sep 8, 2024 | A vulnerability, which was classified as critical, was found in TOTOLINK AC1200 T8 and AC1200 T10 4.1.5cu.861_B20230220/... |
| CVE-2024-8564 | HIGH | 8.8 | 0.4% | Sep 7, 2024 | A vulnerability was found in SourceCodester PHP CRUD 1.0. It has been declared as critical. This vulnerability affects u... |
| CVE-2024-8560 | HIGH | 8.8 | 0.4% | Sep 7, 2024 | A vulnerability, which was classified as critical, was found in SourceCodester Simple Invoice Generator System 1.0. Affe... |
| CVE-2024-8559 | HIGH | 7.2 | 0.4% | Sep 7, 2024 | A vulnerability, which was classified as critical, has been found in SourceCodester Online Food Menu 1.0. This issue aff... |
| CVE-2024-42024 | HIGH | 8.8 | 1.3% | Sep 7, 2024 | A vulnerability that allows an attacker in possession of the Veeam ONE Agent service account credentials to perform remo... |
| CVE-2024-42023 | HIGH | 8.8 | 0.5% | Sep 7, 2024 | An improper access control vulnerability allows low-privileged users to execute code with Administrator privileges remot... |
| CVE-2024-42019 | HIGH | 8 | 0.5% | Sep 7, 2024 | A vulnerability that allows an attacker to access the NTLM hash of the Veeam Reporter Service service account. This atta... |
| CVE-2024-40718 | HIGH | 8.8 | 0.5% | Sep 7, 2024 | A server side request forgery vulnerability allows a low-privileged user to perform local privilege escalation through e... |
| CVE-2024-40714 | HIGH | 8.3 | 0.3% | Sep 7, 2024 | An improper certificate validation vulnerability in TLS certificate validation allows an attacker on the same network to... |
| CVE-2024-40713 | HIGH | 7.8 | 0.3% | Sep 7, 2024 | A vulnerability that allows a user who has been assigned a low-privileged role within Veeam Backup & Replication to alte... |
| CVE-2024-40712 | HIGH | 7.8 | 0.3% | Sep 7, 2024 | A path traversal vulnerability allows an attacker with a low-privileged account and local access to the system to perfor... |
| CVE-2024-40710 | HIGH | 8.8 | 1.1% | Sep 7, 2024 | A series of related high-severity vulnerabilities, the most notable enabling remote code execution (RCE) as the service ... |
| CVE-2024-40709 | HIGH | 7.8 | 0.2% | Sep 7, 2024 | A missing authorization vulnerability allows a local low-privileged user on the machine to escalate their privileges to ... |
| CVE-2024-39718 | HIGH | 8.1 | 0.8% | Sep 7, 2024 | An improper input validation vulnerability that allows a low-privileged user to remotely remove files on the system with... |
| CVE-2024-39715 | HIGH | 8.5 | 0.9% | Sep 7, 2024 | A code injection vulnerability that allows a low-privileged user with REST API access granted to remotely upload arbitra... |
| CVE-2024-38651 | HIGH | 8.5 | 0.9% | Sep 7, 2024 | A code injection vulnerability can allow a low-privileged user to overwrite files on that VSPC server, which can lead to... |
| CVE-2024-36138 | HIGH | 8.1 | 1.1% | Sep 7, 2024 | Bypass incomplete fix of CVE-2024-27980, that arises from improper handling of batch files with all possible extensions ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now