2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-38760 | MEDIUM | 5.3 | 0.4% | Aug 13, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in David Maucher Send Users Email allows Access... |
| CVE-2024-38756 | MEDIUM | 5.3 | 0.4% | Aug 13, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Weblizar Coming Soon allows Accessing Functi... |
| CVE-2024-38752 | MEDIUM | 6.5 | 0.3% | Aug 13, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Zoho Campai... |
| CVE-2024-38742 | MEDIUM | 5.3 | 0.4% | Aug 13, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in MBE Worldwide S.P.A. MBE eShip allows Access... |
| CVE-2024-2259 | MEDIUM | 6.4 | 0.5% | Aug 13, 2024 | This vulnerability exists in InstaRISPACS software due to insufficient validation of user supplied input for the loginTo... |
| CVE-2024-41978 | MEDIUM | 6.5 | 0.5% | Aug 13, 2024 | A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All versions < V8.1), RUGGEDCOM... |
| CVE-2024-41941 | MEDIUM | 4.3 | 0.3% | Aug 13, 2024 | A vulnerability has been identified in SINEC NMS (All versions < V3.0). The affected application does not properly enfor... |
| CVE-2024-41907 | MEDIUM | 5.4 | 0.2% | Aug 13, 2024 | A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V2.0). The affected a... |
| CVE-2024-41906 | MEDIUM | 6.5 | 0.2% | Aug 13, 2024 | A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V2.0). The affected a... |
| CVE-2024-41905 | MEDIUM | 6.5 | 0.3% | Aug 13, 2024 | A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V2.0). The affected a... |
| CVE-2024-41683 | MEDIUM | 5.3 | 0.3% | Aug 13, 2024 | A vulnerability has been identified in Location Intelligence family (All versions < V4.4). Affected products do not prop... |
| CVE-2024-41682 | MEDIUM | 5.3 | 0.4% | Aug 13, 2024 | A vulnerability has been identified in Location Intelligence family (All versions < V4.4). Affected products do not prop... |
| CVE-2024-39922 | MEDIUM | 5.1 | 0.2% | Aug 13, 2024 | A vulnerability has been identified in LOGO! 12/24RCE (6ED1052-1MD08-0BA1) (All versions), LOGO! 12/24RCEo (6ED1052-2MD0... |
| CVE-2024-7715 | MEDIUM | 6.3 | 24.5% | Aug 13, 2024 | ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-... |
| CVE-2024-7247 | MEDIUM | 5.4 | 0.5% | Aug 13, 2024 | The Element Pack Elementor Addons (Header Footer, Template Library, Dynamic Grid & Carousel, Remote Arrows) plugin for W... |
| CVE-2024-6724 | MEDIUM | 4.8 | 0.4% | Aug 13, 2024 | The Generate Images WordPress plugin before 5.2.8 does not sanitise and escape some of its settings, which could allow ... |
| CVE-2024-7092 | MEDIUM | 5.4 | 0.4% | Aug 13, 2024 | The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress... |
| CVE-2024-42373 | MEDIUM | 5.4 | 0.3% | Aug 13, 2024 | SAP Student Life Cycle Management (SLcM) fails to conduct proper authorization checks for authenticated users, leading t... |
| CVE-2024-41734 | MEDIUM | 4.3 | 0.3% | Aug 13, 2024 | Due to missing authorization check in SAP NetWeaver Application Server ABAP and ABAP Platform, an authenticated attacker... |
| CVE-2024-39591 | MEDIUM | 5.3 | 0.3% | Aug 13, 2024 | SAP Document Builder does not perform necessary authorization checks for one of the function modules resulting in escala... |
| CVE-2024-42377 | MEDIUM | 4.3 | 0.2% | Aug 13, 2024 | SAP shared service framework allows an authenticated non-administrative user to call a remote-enabled function, which wi... |
| CVE-2024-42376 | MEDIUM | 6.5 | 0.3% | Aug 13, 2024 | SAP Shared Service Framework does not perform necessary authorization check for an authenticated user, resulting in esca... |
| CVE-2024-42375 | MEDIUM | 4.3 | 0.4% | Aug 13, 2024 | SAP BusinessObjects Business Intelligence Platform allows an authenticated attacker to upload malicious code over the ... |
| CVE-2024-41737 | MEDIUM | 5 | 0.3% | Aug 13, 2024 | SAP CRM ABAP (Insights Management) allows an authenticated attacker to enumerate HTTP endpoints in the internal network ... |
| CVE-2024-41736 | MEDIUM | 4.3 | 0.3% | Aug 13, 2024 | Under certain conditions SAP Permit to Work allows an authenticated attacker to access information which would otherwise... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now