2024 CVE Vulnerabilities

39,225 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-51727HIGH7.5Ruijie Reyee OS versions 2.206.x up to but not including 2.320.x contains a feature that could enable attackers to inval...
CVE-2024-48871CRITICAL9.8The affected product is vulnerable to a stack-based buffer overflow. An unauthenticated attacker could send a malicious ...
CVE-2024-48703MEDIUM4.8PhpGurukul Medical Card Generation System v1.0 is vulnerable to Cross Site Scripting (XSS) in /admin/search-medicalcard....
CVE-2024-47547CRITICAL9.8Ruijie Reyee OS versions 2.206.x up to but not including 2.320.x contains a weak mechanism for its users to change their...
CVE-2024-47043MEDIUM5.3Ruijie Reyee OS versions 2.206.x up to but not including 2.320.x could enable an attacker to correlate a device serial n...
CVE-2024-42494HIGH7.5Ruijie Reyee OS versions 2.206.x up to but not including 2.320.x contains a a feature that could enable sub accounts or ...
CVE-2024-11220HIGH7.8A local low-level user on the server machine with credentials to the running OAS services can create and execute a repor...
CVE-2024-55268MEDIUM6.1A Reflected Cross Site Scripting (XSS) vulnerability was found in /covidtms/registered-user-testing.php in PHPGurukul CO...
CVE-2024-54749HIGH7.5Ubiquiti U7-Pro 7.0.35 was discovered to contain a hardcoded password vulnerability in /etc/shadow, which allows attacke...
CVE-2024-54143CRITICAL9.3openwrt/asu is an image on demand server for OpenWrt based distributions. The request hashing mechanism truncates SHA-25...
CVE-2024-53691HIGH8.8A link following vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vul...
CVE-2024-50404HIGH8.8A link following vulnerability has been reported to affect Qsync Central. If exploited, the vulnerability could allow re...
CVE-2024-50403HIGH7.2A use of externally-controlled format string vulnerability has been reported to affect several QNAP operating system ver...
CVE-2024-50402HIGH7.2A use of externally-controlled format string vulnerability has been reported to affect several QNAP operating system ver...
CVE-2024-50393CRITICAL9.8A command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the ...
CVE-2024-50389CRITICAL9.8A SQL injection vulnerability has been reported to affect QuRouter. If exploited, the vulnerability could allow remote a...
CVE-2024-50388CRITICAL9.8An OS command injection vulnerability has been reported to affect HBS 3 Hybrid Backup Sync. If exploited, the vulnerabil...
CVE-2024-50387CRITICAL9.8A SQL injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vuln...
CVE-2024-48868HIGH7.5An improper neutralization of CRLF sequences ('CRLF Injection') vulnerability has been reported to affect several QNAP o...
CVE-2024-48867HIGH7.5An improper neutralization of CRLF sequences ('CRLF Injection') vulnerability has been reported to affect several QNAP o...
CVE-2024-48866MEDIUM5.3An improper handling of URL encoding (Hex Encoding) vulnerability has been reported to affect several QNAP operating sys...
CVE-2024-48865HIGH7.5An improper certificate validation vulnerability has been reported to affect several QNAP operating system versions. If ...
CVE-2024-48863CRITICAL9.8A command injection vulnerability has been reported to affect License Center. If exploited, the vulnerability could allo...
CVE-2024-48859CRITICAL9.1An improper authentication vulnerability has been reported to affect several QNAP operating system versions. If exploite...
CVE-2024-54750CRITICAL9.8Ubiquiti U6-LR 6.6.65 was discovered to contain a hardcoded password vulnerability in /etc/shadow, which allows attacker...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now