2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-34215 | HIGH | 7.3 | 0.6% | May 14, 2024 | TOTOLINK CP450 v4.1.0cu.747_B20191224 was discovered to contain a stack buffer overflow vulnerability in the setUrlFilte... |
| CVE-2024-34212 | HIGH | 7.3 | 0.6% | May 14, 2024 | TOTOLINK CP450 v4.1.0cu.747_B20191224 was discovered to contain a stack buffer overflow vulnerability in the CloudACMunu... |
| CVE-2024-34211 | HIGH | 8.8 | 0.5% | May 14, 2024 | TOTOLINK CP450 v4.1.0cu.747_B20191224 was discovered to contain a hardcoded password vulnerability in /etc/shadow.sample... |
| CVE-2024-34210 | HIGH | 7.3 | 1.2% | May 14, 2024 | TOTOLINK outdoor CPE CP450 v4.1.0cu.747_B20191224 was discovered to contain a command injection vulnerability in the Clo... |
| CVE-2024-34207 | HIGH | 8.8 | 0.8% | May 14, 2024 | TOTOLINK CP450 v4.1.0cu.747_B20191224 was discovered to contain a stack buffer overflow vulnerability in the setStaticDh... |
| CVE-2024-34205 | HIGH | 7.3 | 1.2% | May 14, 2024 | TOTOLINK CP450 v4.1.0cu.747_B20191224 was discovered to contain a command injection vulnerability in the download_firmwa... |
| CVE-2024-34201 | HIGH | 7.3 | 0.6% | May 14, 2024 | TOTOLINK CP450 v4.1.0cu.747_B20191224 was discovered to contain a stack buffer overflow vulnerability in the getSaveConf... |
| CVE-2024-34200 | HIGH | 8.8 | 0.9% | May 14, 2024 | TOTOLINK CPE CP450 v4.1.0cu.747_B20191224 was discovered to contain a stack buffer overflow vulnerability in the setIpQo... |
| CVE-2024-34199 | HIGH | 8.6 | 1.2% | May 14, 2024 | TinyWeb 1.94 and below allows unauthenticated remote attackers to cause a denial of service (Buffer Overflow) when sendi... |
| CVE-2024-34196 | HIGH | 8.8 | 0.7% | May 14, 2024 | Totolink AC1200 Wireless Dual Band Gigabit Router A3002RU_V3 Firmware V3.0.0-B20230809.1615 is vulnerable to Buffer Over... |
| CVE-2024-34077 | HIGH | 7.3 | 1.2% | May 14, 2024 | MantisBT (Mantis Bug Tracker) is an open source issue tracker. Insufficient access control in the registration and passw... |
| CVE-2024-33877 | HIGH | 8.8 | 0.9% | May 14, 2024 | HDF5 Library through 1.14.3 has a heap-based buffer overflow in H5T__conv_struct_opt in H5Tconv.c. |
| CVE-2024-33873 | HIGH | 8.8 | 0.9% | May 14, 2024 | HDF5 Library through 1.14.3 has a heap-based buffer overflow in H5D__scatter_mem in H5Dscatgath.c. |
| CVE-2024-33818 | HIGH | 7.5 | 0.6% | May 14, 2024 | Globitel KSA SpeechLog v8.1 was discovered to contain an Insecure Direct Object Reference (IDOR) via the userID paramete... |
| CVE-2024-33250 | HIGH | 7.2 | 0.7% | May 14, 2024 | An issue in Open-Source Technology Committee SRS real-time video server RS/4.0.268(Leo) and SRS/4.0.195(Leo) allows a re... |
| CVE-2024-32992 | HIGH | 7.5 | 0.5% | May 14, 2024 | Insufficient verification vulnerability in the baseband module Impact: Successful exploitation of this vulnerability wil... |
| CVE-2024-32990 | HIGH | 7.5 | 0.4% | May 14, 2024 | Permission verification vulnerability in the system sharing pop-up module Impact: Successful exploitation of this vulner... |
| CVE-2024-32989 | HIGH | 7.5 | 0.4% | May 14, 2024 | Insufficient verification vulnerability in the system sharing pop-up module Impact: Successful exploitation of this vuln... |
| CVE-2024-32739 | HIGH | 7.5 | 5.4% | May 14, 2024 | A sql injection vulnerability exists in CyberPower PowerPanel Enterprise prior to v2.8.3. An unauthenticated remote atta... |
| CVE-2024-32738 | HIGH | 7.5 | 4.5% | May 14, 2024 | A sql injection vulnerability exists in CyberPower PowerPanel Enterprise prior to v2.8.3. An unauthenticated remote atta... |
| CVE-2024-32737 | HIGH | 7.5 | 5.4% | May 14, 2024 | A sql injection vulnerability exists in CyberPower PowerPanel Enterprise prior to v2.8.3. An unauthenticated remote atta... |
| CVE-2024-32736 | HIGH | 7.5 | 5.4% | May 14, 2024 | A sql injection vulnerability exists in CyberPower PowerPanel Enterprise prior to v2.8.3. An unauthenticated remote atta... |
| CVE-2024-32724 | HIGH | 7.5 | 0.8% | May 14, 2024 | Missing Authorization vulnerability in Woo product importer Sharkdropship dropshipping for Aliexpress, eBay, Amazon, ets... |
| CVE-2024-32655 | HIGH | 8.1 | 1.7% | May 14, 2024 | Npgsql is the .NET data provider for PostgreSQL. The `WriteBind()` method in `src/Npgsql/Internal/NpgsqlConnector.Fronte... |
| CVE-2024-32624 | HIGH | 7.4 | 0.6% | May 14, 2024 | HDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5T__ref_mem_setnull in H5Tref.c (called from H5T__... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now