2024 CVE Vulnerabilities
39,257 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-42745 | HIGH | 8.8 | 1.7% | Aug 12, 2024 | In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the file /cgi-bin/cstecgi.cgi contains an OS command injection vulnerability... |
| CVE-2024-42744 | HIGH | 8.8 | 1.7% | Aug 12, 2024 | In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the file /cgi-bin/cstecgi.cgi contains an OS command injection vulnerability... |
| CVE-2024-42743 | HIGH | 8.8 | 1.6% | Aug 12, 2024 | In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the file /cgi-bin/cstecgi.cgi contains an OS command injection vulnerability... |
| CVE-2024-42742 | HIGH | 8.8 | 1.7% | Aug 12, 2024 | In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the file /cgi-bin/cstecgi.cgi contains an OS command injection vulnerability... |
| CVE-2024-42741 | HIGH | 8.8 | 1.2% | Aug 12, 2024 | In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the file /cgi-bin/cstecgi.cgi contains an OS command injection vulnerability... |
| CVE-2024-41710 | HIGH | 7.2 | 41.6% | Aug 12, 2024 | A vulnerability in the Mitel 6800 Series, 6900 Series, and 6900w Series SIP Phones, including the 6970 Conference Unit, ... |
| CVE-2024-40892 | HIGH | 7.1 | 0.9% | Aug 12, 2024 | A weak credential vulnerability exists in Firewalla Box Software versions before 1.979. This vulnerability allows a phys... |
| CVE-2024-42627 | HIGH | 8.8 | 0.3% | Aug 12, 2024 | FrogCMS v0.9.5 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/?/snippet/delete/3... |
| CVE-2024-42626 | HIGH | 8.8 | 0.3% | Aug 12, 2024 | FrogCMS v0.9.5 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/?/snippet/add. |
| CVE-2024-42625 | HIGH | 8.8 | 0.2% | Aug 12, 2024 | FrogCMS v0.9.5 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/?/layout/add |
| CVE-2024-42624 | HIGH | 8.8 | 0.3% | Aug 12, 2024 | FrogCMS v0.9.5 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/?/page/delete/10. |
| CVE-2024-42623 | HIGH | 8.8 | 0.3% | Aug 12, 2024 | FrogCMS v0.9.5 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/?/layout/delete/1 |
| CVE-2024-41651 | HIGH | 8.1 | 1.3% | Aug 12, 2024 | An issue in Prestashop v.8.1.7 and before allows a remote attacker to execute arbitrary code via the module upgrade func... |
| CVE-2024-41475 | HIGH | 8.8 | 0.3% | Aug 12, 2024 | Gnuboard g6 6.0.7 is vulnerable to Session hijacking due to a CORS misconfiguration. |
| CVE-2024-40500 | HIGH | 8.6 | 0.6% | Aug 12, 2024 | Cross Site Scripting vulnerability in Martin Kucej i-librarian v.5.11.0 and before allows a local attacker to execute ar... |
| CVE-2024-42632 | HIGH | 8.8 | 0.3% | Aug 12, 2024 | FrogCMS v0.9.5 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/?/page/add. |
| CVE-2024-42631 | HIGH | 8.8 | 0.3% | Aug 12, 2024 | FrogCMS v0.9.5 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/?/layout/edit/1. |
| CVE-2024-42630 | HIGH | 8.8 | 0.3% | Aug 12, 2024 | FrogCMS v0.9.5 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/?/plugin/file_mana... |
| CVE-2024-42629 | HIGH | 8.8 | 0.2% | Aug 12, 2024 | FrogCMS v0.9.5 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/?/page/edit/10. |
| CVE-2024-42628 | HIGH | 8.8 | 0.3% | Aug 12, 2024 | FrogCMS v0.9.5 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/?/snippet/edit/3. |
| CVE-2024-42489 | HIGH | 8.8 | 1.1% | Aug 12, 2024 | Pro Macros provides XWiki rendering macros. Missing escaping in the Viewpdf macro allows any user with view right on the... |
| CVE-2024-42485 | HIGH | 7.5 | 0.6% | Aug 12, 2024 | Filament Excel enables excel export for Filament admin resources. The export download route `/filament-excel/{path}` all... |
| CVE-2024-42481 | HIGH | 7.5 | 0.5% | Aug 12, 2024 | Skyport Daemon (skyportd) is the daemon for the Skyport Panel. By making thousands of folders & files (easy due to skypo... |
| CVE-2024-39091 | HIGH | 8.8 | 1.7% | Aug 12, 2024 | An OS command injection vulnerability in the ccm_debug component of MIPC Camera firmware prior to v5.4.1.240424171021 al... |
| CVE-2024-36877 | HIGH | 8.2 | 0.7% | Aug 12, 2024 | Micro-Star International Z-series motherboards (Z590, Z490, and Z790) and B-series motherboards (B760, B560, B660, and B... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now