2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-37742 | HIGH | 8.2 | 0.5% | Jun 25, 2024 | Insecure Access Control in Safe Exam Browser (SEB) = 3.5.0 on Windows. The vulnerability allows an attacker to share cli... |
| CVE-2024-5019 | HIGH | 7.5 | 0.8% | Jun 25, 2024 | In WhatsUp Gold versions released before 2023.1.3, an unauthenticated Arbitrary File Read issue exists in Wug.UI.Areas... |
| CVE-2024-5018 | HIGH | 7.5 | 0.8% | Jun 25, 2024 | In WhatsUp Gold versions released before 2023.1.3, an unauthenticated Path Traversal vulnerability exists Wug.UI.Areas.W... |
| CVE-2024-5016 | HIGH | 7.2 | 22.4% | Jun 25, 2024 | In WhatsUp Gold versions released before 2023.1.3, Distributed Edition installations can be exploited by using a deseria... |
| CVE-2024-5015 | HIGH | 8.8 | 0.5% | Jun 25, 2024 | In WhatsUp Gold versions released before 2023.1.3, an authenticated SSRF vulnerability in Wug.UI.Areas.Wug.Controllers.S... |
| CVE-2024-5013 | HIGH | 7.5 | 0.8% | Jun 25, 2024 | In WhatsUp Gold versions released before 2023.1.3, an unauthenticated Denial of Service vulnerability was identified. ... |
| CVE-2024-5012 | HIGH | 8.6 | 0.4% | Jun 25, 2024 | In WhatsUp Gold versions released before 2023.1.3, there is a missing authentication vulnerability in WUGDataAccess.Cred... |
| CVE-2024-38516 | HIGH | 8.8 | 0.5% | Jun 25, 2024 | ai-client-html is an Aimeos e-commerce HTML client component. Debug information revealed sensitive information from envi... |
| CVE-2024-37855 | HIGH | 8.4 | 0.5% | Jun 25, 2024 | An issue in Nepstech Wifi Router xpon (terminal) NTPL-Xpon1GFEVN, hardware verstion 1.0 firmware 2.0.1 allows a remote a... |
| CVE-2024-21740 | HIGH | 7.4 | 0.1% | Jun 25, 2024 | Artery AT32F415CBT7 and AT32F421C8T7 devices have Incorrect Access Control. |
| CVE-2024-6206 | HIGH | 7.5 | 0.4% | Jun 25, 2024 | A security vulnerability has been identified in HPE Athonet Mobile Core software. The core application contains a code i... |
| CVE-2024-5011 | HIGH | 7.5 | 47.1% | Jun 25, 2024 | In WhatsUp Gold versions released before 2023.1.3, an uncontrolled resource consumption vulnerability exists. A speciall... |
| CVE-2024-5010 | HIGH | 7.5 | 70.0% | Jun 25, 2024 | In WhatsUp Gold versions released before 2023.1.3, a vulnerability exists in the TestController functionality. A specia... |
| CVE-2024-5009 | HIGH | 8.4 | 15.0% | Jun 25, 2024 | In WhatsUp Gold versions released before 2023.1.3, an Improper Access Control vulnerability in Wug.UI.Controllers.Instal... |
| CVE-2024-5008 | HIGH | 8.8 | 17.3% | Jun 25, 2024 | In WhatsUp Gold versions released before 2023.1.3, an authenticated user with certain permissions can upload an arbitr... |
| CVE-2024-4498 | HIGH | 7.7 | 0.5% | Jun 25, 2024 | A Path Traversal and Remote File Inclusion (RFI) vulnerability exists in the parisneo/lollms-webui application, affectin... |
| CVE-2024-6257 | HIGH | 8.8 | 1.0% | Jun 25, 2024 | HashiCorp’s go-getter library can be coerced into executing Git update on an existing maliciously modified Git Configura... |
| CVE-2024-5990 | HIGH | 7.5 | 2.3% | Jun 25, 2024 | Due to an improper input validation, an unauthenticated threat actor can send a malicious message to a monitor thread wi... |
| CVE-2024-39471 | HIGH | 7.1 | 0.2% | Jun 25, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: add error handle to avoid out-of-bounds... |
| CVE-2024-39469 | HIGH | 7.1 | 0.2% | Jun 25, 2024 | In the Linux kernel, the following vulnerability has been resolved: nilfs2: fix nilfs_empty_dir() misjudgment and long ... |
| CVE-2024-39467 | HIGH | 7.1 | 0.2% | Jun 25, 2024 | In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to do sanity check on i_xattr_nid in sani... |
| CVE-2024-39463 | HIGH | 7.8 | 0.3% | Jun 25, 2024 | In the Linux kernel, the following vulnerability has been resolved: 9p: add missing locking around taking dentry fid li... |
| CVE-2024-37085 | HIGH | 7.2 | 26.8% | Jun 25, 2024 | VMware ESXi contains an authentication bypass vulnerability. A malicious actor with sufficient Active Directory (AD) per... |
| CVE-2024-37078 | HIGH | 7.1 | 0.3% | Jun 25, 2024 | In the Linux kernel, the following vulnerability has been resolved: nilfs2: fix potential kernel bug due to lack of wri... |
| CVE-2024-38952 | HIGH | 7.5 | 0.7% | Jun 25, 2024 | PX4-Autopilot v1.14.3 was discovered to contain a buffer overflow via the topic_name parameter at /logger/logged_topics.... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now