2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-33615 | HIGH | 8.8 | 0.7% | May 15, 2024 | A specially crafted Zip file containing path traversal characters can be imported to the CyberPower PowerPanel serve... |
| CVE-2024-32042 | HIGH | 7.5 | 0.4% | May 15, 2024 | The key used to encrypt passwords stored in the database can be found in the CyberPower PowerPanel application code, ... |
| CVE-2024-31856 | HIGH | 8.8 | 0.5% | May 15, 2024 | An attacker with certain MQTT permissions can create malicious messages to all CyberPower PowerPanel devices. This coul... |
| CVE-2024-31409 | HIGH | 7.5 | 0.4% | May 15, 2024 | Certain MQTT wildcards are not blocked on the CyberPower PowerPanel system, which might result in an attacker obtainin... |
| CVE-2024-4906 | HIGH | 7.5 | 0.4% | May 15, 2024 | A vulnerability, which was classified as critical, was found in Campcodes Complete Web-Based School Management System 1.... |
| CVE-2024-35102 | HIGH | 8.8 | 0.5% | May 15, 2024 | Insecure Permissions vulnerability in VITEC AvediaServer (Model avsrv-m8105) 8.6.2-1 allows a remote attacker to escalat... |
| CVE-2024-4905 | HIGH | 8.8 | 0.5% | May 15, 2024 | A vulnerability classified as critical has been found in Kashipara College Management System 1.0. Affected is an unknown... |
| CVE-2024-25743 | HIGH | 7.1 | 0.2% | May 15, 2024 | In the Linux kernel through 6.9, an untrusted hypervisor can inject virtual interrupts 0 and 14 at any point in time and... |
| CVE-2024-20383 | HIGH | 8.4 | 0.4% | May 15, 2024 | A vulnerability in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email and Web Manager c... |
| CVE-2024-20366 | HIGH | 7.8 | 0.2% | May 15, 2024 | A vulnerability in the Tail-f High Availability Cluster Communications (HCC) function pack of Cisco Crosswork Network Se... |
| CVE-2024-4622 | HIGH | 8.3 | 0.5% | May 15, 2024 | If misconfigured, alpitronic Hypercharger EV charging devices can expose a web interface protected by authentication. I... |
| CVE-2024-4202 | HIGH | 8.6 | 0.3% | May 15, 2024 | In Progress® Telerik® Reporting versions prior to 2024 Q2 (18.1.24.514), a code execution attack is possible through an ... |
| CVE-2024-4200 | HIGH | 7.8 | 0.3% | May 15, 2024 | In Progress® Telerik® Reporting versions prior to 2024 Q2 (18.1.24.2.514), a code execution attack is possible by a loca... |
| CVE-2024-3970 | HIGH | 7.5 | 0.5% | May 15, 2024 | Server Side Request Forgery vulnerability has been discovered in OpenText™ iManager 3.2.6.0200. This could lead to senst... |
| CVE-2024-3485 | HIGH | 7.5 | 0.3% | May 15, 2024 | Server Side Request Forgery vulnerability has been discovered in OpenText™ iManager 3.2.6.0200. This could lead to senst... |
| CVE-2024-28042 | HIGH | 8.6 | 0.2% | May 15, 2024 | SUBNET Solutions Inc. has identified vulnerabilities in third-party components used in PowerSYSTEM Center. |
| CVE-2024-27353 | HIGH | 7.4 | 0.2% | May 15, 2024 | A memory corruption vulnerability in SdHost and SdMmcDevice in Insyde InsydeH2O kernel 5.2 before 05.29.09, kernel 5.3 b... |
| CVE-2024-25079 | HIGH | 7.4 | 0.1% | May 15, 2024 | A memory corruption vulnerability in HddPassword in Insyde InsydeH2O kernel 5.2 before 05.29.09, kernel 5.3 before 05.38... |
| CVE-2024-25078 | HIGH | 7.4 | 0.1% | May 15, 2024 | A memory corruption vulnerability in StorageSecurityCommandDxe in Insyde InsydeH2O before kernel 5.2: IB19130163 in 05.2... |
| CVE-2024-4670 | HIGH | 8.8 | 0.6% | May 15, 2024 | The All-in-One Video Gallery plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and inclu... |
| CVE-2024-34100 | HIGH | 7.8 | 0.4% | May 15, 2024 | Acrobat Reader versions 20.005.30574, 24.002.20736 and earlier are affected by a Use After Free vulnerability that could... |
| CVE-2024-34099 | HIGH | 7.8 | 0.4% | May 15, 2024 | Acrobat Reader versions 20.005.30574, 24.002.20736 and earlier are affected by an Improper Access Control vulnerability ... |
| CVE-2024-34098 | HIGH | 7.8 | 0.4% | May 15, 2024 | Acrobat Reader versions 20.005.30574, 24.002.20736 and earlier are affected by an Improper Input Validation vulnerabilit... |
| CVE-2024-34097 | HIGH | 7.8 | 0.6% | May 15, 2024 | Acrobat Reader versions 20.005.30574, 24.002.20736 and earlier are affected by a Use After Free vulnerability that could... |
| CVE-2024-34096 | HIGH | 7.8 | 0.6% | May 15, 2024 | Acrobat Reader versions 20.005.30574, 24.002.20736 and earlier are affected by a Use After Free vulnerability that could... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now