2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-49817 | MEDIUM | 4.4 | 0.2% | Dec 17, 2024 | IBM Security Guardium Key Lifecycle Manager 4.1, 4.1.1, 4.2.0, and 4.2.1 stores user credentials in configuration files ... |
| CVE-2024-49816 | MEDIUM | 4.4 | 0.3% | Dec 17, 2024 | IBM Security Guardium Key Lifecycle Manager 4.1, 4.1.1, 4.2.0, and 4.2.1 stores potentially sensitive information in log... |
| CVE-2024-42194 | LOW | 3.1 | 0.3% | Dec 17, 2024 | An improper handling of insufficient permissions or privileges affects HCL BigFix Inventory. An attacker having access ... |
| CVE-2024-53144 | MEDIUM | 5.5 | 0.3% | Dec 17, 2024 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_event: Align BR/EDR JUST_WORKS parin... |
| CVE-2024-12671 | HIGH | 7.8 | 0.3% | Dec 17, 2024 | A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds Write vulnerability... |
| CVE-2024-12670 | HIGH | 7.8 | 0.3% | Dec 17, 2024 | A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can be used to cause a Heap-based Overflow vul... |
| CVE-2024-12669 | HIGH | 7.8 | 0.3% | Dec 17, 2024 | A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can be used to cause a Heap-based Overflow vul... |
| CVE-2024-12200 | HIGH | 7.8 | 0.3% | Dec 17, 2024 | A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds Write vulnerability... |
| CVE-2024-12199 | HIGH | 7.8 | 0.3% | Dec 17, 2024 | A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds Write vulnerability... |
| CVE-2024-12198 | HIGH | 7.8 | 0.5% | Dec 17, 2024 | A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds Write vulnerability... |
| CVE-2024-12197 | HIGH | 7.8 | 0.3% | Dec 17, 2024 | A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds Write vulnerability... |
| CVE-2024-12194 | HIGH | 7.8 | 0.3% | Dec 17, 2024 | A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can force a Memory Corruption vulnerability. A... |
| CVE-2024-12193 | HIGH | 7.8 | 0.3% | Dec 17, 2024 | A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds Write vulnerability... |
| CVE-2024-12192 | HIGH | 7.8 | 0.3% | Dec 17, 2024 | A maliciously crafted DWF file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds Write vulnerability.... |
| CVE-2024-12191 | HIGH | 7.8 | 0.3% | Dec 17, 2024 | A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, may force an Out-of-Bounds Write vulnerability... |
| CVE-2024-12179 | HIGH | 7.8 | 0.3% | Dec 17, 2024 | A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can be used to cause a Heap-based Overflow vul... |
| CVE-2024-12178 | HIGH | 7.8 | 0.3% | Dec 17, 2024 | A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can force a Memory Corruption vulnerability. A... |
| CVE-2024-11422 | HIGH | 7.8 | 0.4% | Dec 17, 2024 | A maliciously crafted DWFX file, when parsed through Autodesk Navisworks, can force an Out-of-Bounds Write vulnerability... |
| CVE-2024-10476 | HIGH | 8 | 0.2% | Dec 17, 2024 | Default credentials are used in the above listed BD Diagnostic Solutions products. If exploited, threat actors may be ab... |
| CVE-2024-37607 | MEDIUM | 6.5 | 0.5% | Dec 17, 2024 | A Buffer overflow vulnerability in D-Link DAP-2555 REVA_FIRMWARE_1.20 allows remote attackers to cause a Denial of Servi... |
| CVE-2024-37606 | MEDIUM | 6.5 | 0.5% | Dec 17, 2024 | A Stack overflow vulnerability in D-Link DCS-932L REVB_FIRMWARE_2.18.01 allows attackers to cause a Denial of Service (D... |
| CVE-2024-37605 | MEDIUM | 6.5 | 0.6% | Dec 17, 2024 | A NULL pointer dereference in D-Link DIR-860L REVB_FIRMWARE_2.04.B04_ic5b allows attackers to cause a Denial of Service ... |
| CVE-2024-36832 | HIGH | 7.5 | 0.4% | Dec 17, 2024 | A NULL pointer dereference in D-Link DAP-1513 REVA_FIRMWARE_1.01 allows attackers to cause a Denial of Service (DoS) via... |
| CVE-2024-36831 | MEDIUM | 5.3 | 0.7% | Dec 17, 2024 | A NULL pointer dereference in the plugins_call_handle_uri_clean function of D-Link DAP-1520 REVA_FIRMWARE_1.10B04_BETA02... |
| CVE-2024-8972 | CRITICAL | 9.8 | 0.4% | Dec 17, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Mobil365 Informati... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now