2024 CVE Vulnerabilities

39,257 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-42949HIGH7.5Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the qos parameter in the fromqossetting func...
CVE-2024-42948HIGH7.5Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the delno parameter in the fromPptpUserSetti...
CVE-2024-42946HIGH7.5Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the page parameter in the fromVirtualSer fun...
CVE-2024-42945HIGH7.5Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the page parameter in the fromAddressNat fun...
CVE-2024-42944HIGH7.5Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the page parameter in the fromNatlimit funct...
CVE-2024-42943HIGH7.5Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the PPPOEPassword parameter in the fromAdvSe...
CVE-2024-42942HIGH7.5Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the page parameter in the frmL7ImForm functi...
CVE-2024-42941HIGH7.5Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the wanmode parameter in the fromAdvSetWan f...
CVE-2024-42940HIGH7.5Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the page parameter in the fromP2pListFilter ...
CVE-2024-42681HIGH8.8Insecure Permissions vulnerability in xxl-job v.2.4.1 allows a remote attacker to execute arbitrary code via the Sub-Tas...
CVE-2024-7263HIGH7.8Improper path validation in promecefpluginhost.exe in Kingsoft WPS Office version ranging from 12.2.0.13110 to 12.2.0.17...
CVE-2024-7262HIGH7.8Improper path validation in promecefpluginhost.exe in Kingsoft WPS Office version ranging from 12.2.0.13110 to 12.2.0.16...
CVE-2024-43373HIGH7.8webcrack is a tool for reverse engineering javascript. An arbitrary file write vulnerability exists in the webcrack modu...
CVE-2024-7832HIGH8.8** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-...
CVE-2024-42679HIGH7.8SQL Injection vulnerability in Super easy enterprise management system v.1.0.0 and before allows a local attacker to exe...
CVE-2024-42676HIGH8.8File Upload vulnerability in Huizhi enterprise resource management system v.1.0 and before allows a remote attacker to e...
CVE-2024-7813HIGH7.5A vulnerability, which was classified as problematic, has been found in SourceCodester Prison Management System 1.0. Thi...
CVE-2024-7628HIGH8.1The MStore API – Create Native Android & iOS Apps On The Cloud plugin for WordPress is vulnerable to authentication bypa...
CVE-2024-7624HIGH8.1The Zephyr Project Manager plugin for WordPress is vulnerable to limited privilege escalation in all versions up to, and...
CVE-2024-7810HIGH8.8A vulnerability was found in SourceCodester Online Graduate Tracer System 1.0. It has been rated as critical. Affected b...
CVE-2024-7800HIGH7.5A vulnerability classified as critical has been found in SourceCodester Simple Online Bidding System 1.0. This affects a...
CVE-2024-7799HIGH7.3A vulnerability was found in SourceCodester Simple Online Bidding System 1.0. It has been rated as critical. Affected by...
CVE-2024-7515HIGH7.5CVE-2024-7515 IMPACT A denial-of-service vulnerability exists in the affected products. A malformed PTP management pack...
CVE-2024-7513HIGH8.8CVE-2024-7513 IMPACT A code execution vulnerability exists in the affected product. The vulnerability occurs due to imp...
CVE-2024-6078HIGH8.6CVE-2024-6078 IMPACT An improper authentication vulnerability exists in the affected product, which could allow a malic...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now