2024 CVE Vulnerabilities
39,257 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-37968 | HIGH | 7.5 | 1.0% | Aug 13, 2024 | Windows DNS Spoofing Vulnerability |
| CVE-2024-29995 | HIGH | 8.1 | 1.5% | Aug 13, 2024 | Windows Kerberos Elevation of Privilege Vulnerability |
| CVE-2024-7113 | HIGH | 8.7 | 0.5% | Aug 13, 2024 | If exploited, this vulnerability could cause a SuiteLink server to consume excessive system resources and slow down proc... |
| CVE-2024-6619 | HIGH | 8.5 | 0.1% | Aug 13, 2024 | In Ocean Data Systems Dream Report, an incorrect permission vulnerability could allow a local unprivileged attacker to e... |
| CVE-2024-6618 | HIGH | 8.5 | 0.3% | Aug 13, 2024 | In Ocean Data Systems Dream Report, a path traversal vulnerability could allow an attacker to perform remote code execut... |
| CVE-2024-37015 | HIGH | 7.4 | 0.4% | Aug 13, 2024 | An issue was discovered in Ada Web Server 20.0. When configured to use SSL (which is not the default setting), the SSL/T... |
| CVE-2024-36446 | HIGH | 8.8 | 0.5% | Aug 13, 2024 | The provisioning manager component of Mitel MiVoice MX-ONE through 7.6 SP1 could allow an authenticated attacker to cond... |
| CVE-2024-21757 | HIGH | 7.8 | 0.2% | Aug 13, 2024 | A unverified password change in Fortinet FortiManager versions 7.0.0 through 7.0.10, versions 7.2.0 through 7.2.4, and v... |
| CVE-2024-42739 | HIGH | 8.8 | 1.7% | Aug 13, 2024 | In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the file /cgi-bin/cstecgi.cgi contains an OS command injection vulnerability... |
| CVE-2024-42738 | HIGH | 8.8 | 1.6% | Aug 13, 2024 | In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the file /cgi-bin/cstecgi.cgi contains an OS command injection vulnerability... |
| CVE-2024-42737 | HIGH | 8.8 | 1.7% | Aug 13, 2024 | In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the file /cgi-bin/cstecgi.cgi contains an OS command injection vulnerability... |
| CVE-2024-42736 | HIGH | 7.8 | 1.6% | Aug 13, 2024 | In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the file /cgi-bin/cstecgi.cgi contains an OS command injection vulnerability... |
| CVE-2024-5849 | HIGH | 7.1 | 0.4% | Aug 13, 2024 | An unauthenticated remote attacker may use a reflected XSS vulnerability to obtain information from a user or reboot the... |
| CVE-2024-38502 | HIGH | 7.1 | 0.3% | Aug 13, 2024 | An unauthenticated remote attacker may use stored XSS vulnerability to obtain information from a user or reboot the affe... |
| CVE-2024-43140 | HIGH | 8.8 | 0.6% | Aug 13, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in G5Theme Ultimate Bootstr... |
| CVE-2024-43138 | HIGH | 8.8 | 0.6% | Aug 13, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in MagePeople Team Event Ma... |
| CVE-2024-37287 | HIGH | 7.2 | 1.6% | Aug 13, 2024 | A flaw allowing arbitrary code execution was discovered in Kibana. An attacker with access to ML and Alerting connector ... |
| CVE-2024-35124 | HIGH | 7.5 | 0.5% | Aug 13, 2024 | A vulnerability in the combination of the OpenBMC's FW1050.00 through FW1050.10, FW1030.00 through FW1030.50, and FW1020... |
| CVE-2024-43135 | HIGH | 8.8 | 0.5% | Aug 13, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Themewinter WPCafe allow... |
| CVE-2024-43131 | HIGH | 7.5 | 0.5% | Aug 13, 2024 | Incorrect Authorization vulnerability in WPWeb Docket (WooCommerce Collections / Wishlist / Watchlist) allows Accessing ... |
| CVE-2024-43129 | HIGH | 8.8 | 0.6% | Aug 13, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in WPDeveloper BetterDocs a... |
| CVE-2024-43128 | HIGH | 7.3 | 0.3% | Aug 13, 2024 | Improper Control of Generation of Code ('Code Injection') vulnerability in WC Product Table WooCommerce Product Table Li... |
| CVE-2024-43121 | HIGH | 7.2 | 0.5% | Aug 13, 2024 | Improper Privilege Management vulnerability in realmag777 HUSKY allows Privilege Escalation.This issue affects HUSKY: fr... |
| CVE-2024-40697 | HIGH | 7.5 | 0.5% | Aug 13, 2024 | IBM Common Licensing 9.0 does not require that users should have strong passwords by default, which makes it easier for ... |
| CVE-2024-38787 | HIGH | 7.5 | 0.4% | Aug 13, 2024 | Insertion of Sensitive Information Into Sent Data vulnerability in Javier Carazo Import and export users and customers i... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now