2024 CVE Vulnerabilities

39,225 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-34631MEDIUM5.5Out-of-bounds read in applying new binary in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentia...
CVE-2024-34630MEDIUM5.5Out-of-bounds read in applying own binary with textbox in Samsung Notes prior to version 4.4.21.62 allows local attacker...
CVE-2024-34629MEDIUM5.5Out-of-bounds read in applying binary with text common object in Samsung Notes prior to version 4.4.21.62 allows local a...
CVE-2024-34628MEDIUM5.5Out-of-bounds read in applying binary with path in Samsung Notes prior to version 4.4.21.62 allows local attackers to po...
CVE-2024-34627MEDIUM5.5Out-of-bounds read in parsing implemention in Samsung Notes prior to version 4.4.21.62 allows local attackers to potenti...
CVE-2024-34626MEDIUM5.5Out-of-bounds read in applying own binary in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentia...
CVE-2024-34625MEDIUM5.5Out-of-bounds read in applying connection point in Samsung Notes prior to version 4.4.21.62 allows local attackers to po...
CVE-2024-34624MEDIUM5.5Out-of-bounds read in applying paragraphs in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentia...
CVE-2024-34621MEDIUM5.5Out-of-bounds read in applying binary with data in Samsung Notes prior to version 4.4.21.62 allows local attackers to po...
CVE-2024-34616MEDIUM5.5Improper handling of insufficient permission in KnoxDualDARPolicy prior to SMR Aug-2024 Release 1 allows local attackers...
CVE-2024-34613MEDIUM5.5Improper access control in Galaxy Watch prior to SMR Aug-2024 Release 1 allows local attackers to access sensitive infor...
CVE-2024-34611MEDIUM5.5Improper access control in KnoxService prior to SMR Aug-2024 Release 1 allows local attackers to get sensitive informati...
CVE-2024-34610MEDIUM5.5Improper access control in ExtControlDeviceService prior to SMR Aug-2024 Release 1 allows local attackers to access prot...
CVE-2024-34609MEDIUM5.5Improper access control in VoiceNoteService prior to SMR Aug-2024 Release 1 allows local attackers to bypass restriction...
CVE-2024-34608MEDIUM5.5Improper access control in PaymentManagerService prior to SMR Aug-2024 Release 1 allows local attackers to bypass restri...
CVE-2024-34607MEDIUM5.5Improper access control in SamsungNotesService prior to SMR Aug-2024 Release 1 allows local attackers to bypass restrict...
CVE-2024-34606MEDIUM5.5Improper access control in SmartThingsService prior to SMR Aug-2024 Release 1 allows local attackers to bypass restricti...
CVE-2024-34605MEDIUM5.5Improper access control in SamsungHealthService prior to SMR Aug-2024 Release 1 allows local attackers to bypass restric...
CVE-2024-34604MEDIUM5.5Improper access control in LedCoverService prior to SMR Aug-2024 Release 1 allows local attackers to bypass restrictions...
CVE-2024-38206MEDIUM6.5An authenticated attacker can bypass Server-Side Request Forgery (SSRF) protection in Microsoft Copilot Studio to leak s...
CVE-2024-38166MEDIUM6.1An unauthenticated attacker can exploit improper neutralization of input during web page generation in Microsoft Dynamic...
CVE-2024-42218MEDIUM4.71Password 8 before 8.10.38 for macOS allows local attackers to exfiltrate vault items by bypassing macOS-specific securi...
CVE-2024-42400MEDIUM5.3Multiple unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the Soft AP daemon accessed via the PAPI proto...
CVE-2024-42399MEDIUM5.3Multiple unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the Soft AP daemon accessed via the PAPI proto...
CVE-2024-42398MEDIUM5.3Multiple unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the Soft AP daemon accessed via the PAPI proto...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now