2024 CVE Vulnerabilities

39,225 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-34215HIGH7.3TOTOLINK CP450 v4.1.0cu.747_B20191224 was discovered to contain a stack buffer overflow vulnerability in the setUrlFilte...
CVE-2024-34212HIGH7.3TOTOLINK CP450 v4.1.0cu.747_B20191224 was discovered to contain a stack buffer overflow vulnerability in the CloudACMunu...
CVE-2024-34211HIGH8.8TOTOLINK CP450 v4.1.0cu.747_B20191224 was discovered to contain a hardcoded password vulnerability in /etc/shadow.sample...
CVE-2024-34210HIGH7.3TOTOLINK outdoor CPE CP450 v4.1.0cu.747_B20191224 was discovered to contain a command injection vulnerability in the Clo...
CVE-2024-34207HIGH8.8TOTOLINK CP450 v4.1.0cu.747_B20191224 was discovered to contain a stack buffer overflow vulnerability in the setStaticDh...
CVE-2024-34205HIGH7.3TOTOLINK CP450 v4.1.0cu.747_B20191224 was discovered to contain a command injection vulnerability in the download_firmwa...
CVE-2024-34201HIGH7.3TOTOLINK CP450 v4.1.0cu.747_B20191224 was discovered to contain a stack buffer overflow vulnerability in the getSaveConf...
CVE-2024-34200HIGH8.8TOTOLINK CPE CP450 v4.1.0cu.747_B20191224 was discovered to contain a stack buffer overflow vulnerability in the setIpQo...
CVE-2024-34199HIGH8.6TinyWeb 1.94 and below allows unauthenticated remote attackers to cause a denial of service (Buffer Overflow) when sendi...
CVE-2024-34196HIGH8.8Totolink AC1200 Wireless Dual Band Gigabit Router A3002RU_V3 Firmware V3.0.0-B20230809.1615 is vulnerable to Buffer Over...
CVE-2024-34077HIGH7.3MantisBT (Mantis Bug Tracker) is an open source issue tracker. Insufficient access control in the registration and passw...
CVE-2024-33877HIGH8.8HDF5 Library through 1.14.3 has a heap-based buffer overflow in H5T__conv_struct_opt in H5Tconv.c.
CVE-2024-33873HIGH8.8HDF5 Library through 1.14.3 has a heap-based buffer overflow in H5D__scatter_mem in H5Dscatgath.c.
CVE-2024-33818HIGH7.5Globitel KSA SpeechLog v8.1 was discovered to contain an Insecure Direct Object Reference (IDOR) via the userID paramete...
CVE-2024-33250HIGH7.2An issue in Open-Source Technology Committee SRS real-time video server RS/4.0.268(Leo) and SRS/4.0.195(Leo) allows a re...
CVE-2024-32992HIGH7.5Insufficient verification vulnerability in the baseband module Impact: Successful exploitation of this vulnerability wil...
CVE-2024-32990HIGH7.5Permission verification vulnerability in the system sharing pop-up module Impact: Successful exploitation of this vulner...
CVE-2024-32989HIGH7.5Insufficient verification vulnerability in the system sharing pop-up module Impact: Successful exploitation of this vuln...
CVE-2024-32739HIGH7.5A sql injection vulnerability exists in CyberPower PowerPanel Enterprise prior to v2.8.3. An unauthenticated remote atta...
CVE-2024-32738HIGH7.5A sql injection vulnerability exists in CyberPower PowerPanel Enterprise prior to v2.8.3. An unauthenticated remote atta...
CVE-2024-32737HIGH7.5A sql injection vulnerability exists in CyberPower PowerPanel Enterprise prior to v2.8.3. An unauthenticated remote atta...
CVE-2024-32736HIGH7.5A sql injection vulnerability exists in CyberPower PowerPanel Enterprise prior to v2.8.3. An unauthenticated remote atta...
CVE-2024-32724HIGH7.5Missing Authorization vulnerability in Woo product importer Sharkdropship dropshipping for Aliexpress, eBay, Amazon, ets...
CVE-2024-32655HIGH8.1Npgsql is the .NET data provider for PostgreSQL. The `WriteBind()` method in `src/Npgsql/Internal/NpgsqlConnector.Fronte...
CVE-2024-32624HIGH7.4HDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5T__ref_mem_setnull in H5Tref.c (called from H5T__...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now