2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-8525 | CRITICAL | 10 | 1.4% | Nov 21, 2024 | An unrestricted upload of file with dangerous type in Automated Logic WebCTRL 7.0 could allow an unauthenticated user to... |
| CVE-2024-45514 | MEDIUM | 5.4 | 0.6% | Nov 21, 2024 | An issue was discovered in Zimbra Collaboration (ZCS) through v10.1. A Cross-Site Scripting (XSS) vulnerability exists i... |
| CVE-2024-45512 | MEDIUM | 5.4 | 0.4% | Nov 21, 2024 | An issue was discovered in webmail in Zimbra Collaboration (ZCS) through 10.1. An attacker can exploit this vulnerabilit... |
| CVE-2024-53429 | HIGH | 7.5 | 0.7% | Nov 21, 2024 | Open62541 v1.4.6 is has an assertion failure in fuzz_binary_decode, which leads to a crash. |
| CVE-2024-48747 | MEDIUM | 6.8 | 0.9% | Nov 21, 2024 | An issue in alist-tvbox v1.7.1 allows a remote attacker to execute arbitrary code via the /atv-cli file. |
| CVE-2024-29224 | CRITICAL | 9.8 | 6.3% | Nov 21, 2024 | An OS command injection vulnerability exists in the NAT parameter of GoCast 1.1.3. A specially crafted HTTP request can ... |
| CVE-2024-28892 | CRITICAL | 9.8 | 6.4% | Nov 21, 2024 | An OS command injection vulnerability exists in the name parameter of GoCast 1.1.3. A specially crafted HTTP request can... |
| CVE-2024-28027 | HIGH | 7.2 | 7.5% | Nov 21, 2024 | Three OS command injection vulnerabilities exist in the web interface I/O configuration functionality of MC Technologies... |
| CVE-2024-28026 | HIGH | 7.2 | 5.8% | Nov 21, 2024 | Three OS command injection vulnerabilities exist in the web interface I/O configuration functionality of MC Technologies... |
| CVE-2024-28025 | HIGH | 7.2 | 7.5% | Nov 21, 2024 | Three OS command injection vulnerabilities exist in the web interface I/O configuration functionality of MC Technologies... |
| CVE-2024-21855 | CRITICAL | 9.8 | 2.0% | Nov 21, 2024 | A lack of authentication vulnerability exists in the HTTP API functionality of GoCast 1.1.3. A specially crafted HTTP re... |
| CVE-2024-21786 | HIGH | 7.2 | 10.5% | Nov 21, 2024 | An OS command injection vulnerability exists in the web interface configuration upload functionality of MC Technologies ... |
| CVE-2024-11592 | CRITICAL | 9.8 | 0.9% | Nov 21, 2024 | A vulnerability has been found in 1000 Projects Beauty Parlour Management System 1.0 and classified as critical. This vu... |
| CVE-2024-7130 | MEDIUM | 5.5 | 0.4% | Nov 21, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Kion Comput... |
| CVE-2024-7026 | HIGH | 7.5 | 0.6% | Nov 21, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Teknogis Informati... |
| CVE-2024-53426 | MEDIUM | 6.2 | 0.3% | Nov 21, 2024 | A heap-buffer-overflow vulnerability has been identified in ntopng 6.2 in the Flow::dissectMDNS function. |
| CVE-2024-53425 | MEDIUM | 6.2 | 0.3% | Nov 21, 2024 | A heap-buffer-overflow vulnerability was discovered in the SkipSpacesAndLineEnd function in Assimp v5.4.3. This issue oc... |
| CVE-2024-11591 | CRITICAL | 9.8 | 0.9% | Nov 21, 2024 | A vulnerability, which was classified as critical, was found in 1000 Projects Beauty Parlour Management System 1.0. This... |
| CVE-2024-11089 | MEDIUM | 5.3 | 0.6% | Nov 21, 2024 | The Anonymous Restricted Content plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up... |
| CVE-2024-11088 | HIGH | 7.5 | 0.6% | Nov 21, 2024 | The Simple Membership plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and in... |
| CVE-2024-7016 | MEDIUM | 4.8 | 0.4% | Nov 21, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Smarttek In... |
| CVE-2024-11590 | CRITICAL | 9.8 | 0.8% | Nov 21, 2024 | A vulnerability, which was classified as critical, has been found in 1000 Projects Bookstore Management System 1.0. Affe... |
| CVE-2024-11589 | HIGH | 8.8 | 0.7% | Nov 21, 2024 | A vulnerability classified as critical was found in itsourcecode Tailoring Management System 1.0. Affected by this vulne... |
| CVE-2024-11588 | HIGH | 7.5 | 0.8% | Nov 21, 2024 | A vulnerability was found in AVL-DiTEST-DiagDev libdoip 1.0.0. It has been rated as problematic. This issue affects the ... |
| CVE-2024-11587 | MEDIUM | 6.1 | 0.9% | Nov 21, 2024 | A vulnerability was found in idcCMS 1.60. It has been classified as problematic. This affects the function GetCityOption... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now