2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-4299 | HIGH | 7.2 | 2.1% | Apr 29, 2024 | The system configuration interface of HGiga iSherlock (including MailSherlock, SpamSherock, AuditSherlock) fails to filt... |
| CVE-2024-2757 | HIGH | 7.5 | 1.9% | Apr 29, 2024 | In PHP 8.3.* before 8.3.5, function mb_encode_mimeheader() runs endlessly for some inputs that contain long strings of n... |
| CVE-2024-4298 | HIGH | 7.2 | 2.1% | Apr 29, 2024 | The email search interface of HGiga iSherlock (including MailSherlock, SpamSherock, AuditSherlock) fails to filter speci... |
| CVE-2024-33899 | HIGH | 7.1 | 0.8% | Apr 29, 2024 | RARLAB WinRAR before 7.00, on Linux and UNIX platforms, allows attackers to spoof the screen output, or cause a denial o... |
| CVE-2024-33891 | HIGH | 8.8 | 1.0% | Apr 28, 2024 | Delinea Secret Server before 11.7.000001 allows attackers to bypass authentication via the SOAP API in SecretServer/webs... |
| CVE-2024-25050 | HIGH | 7.8 | 0.3% | Apr 28, 2024 | IBM i 7.2, 7.3, 7.4, 7.5 and IBM Rational Development Studio for i 7.2, 7.3, 7.4, 7.5 networking and compiler infrastruc... |
| CVE-2024-26928 | HIGH | 7.8 | 0.3% | Apr 28, 2024 | In the Linux kernel, the following vulnerability has been resolved: smb: client: fix potential UAF in cifs_debug_files_... |
| CVE-2024-26927 | HIGH | 8.4 | 0.3% | Apr 28, 2024 | In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: Add some bounds checking to firmware dat... |
| CVE-2024-4294 | HIGH | 8.8 | 0.9% | Apr 27, 2024 | A vulnerability, which was classified as critical, has been found in PHPGurukul Doctor Appointment Management System 1.0... |
| CVE-2024-4291 | HIGH | 8.8 | 1.5% | Apr 27, 2024 | A vulnerability was found in Tenda A301 15.13.08.12_multi_TDE01. It has been rated as critical. This issue affects the f... |
| CVE-2024-4255 | HIGH | 7.2 | 5.0% | Apr 27, 2024 | A vulnerability, which was classified as critical, has been found in Ruijie RG-UAC up to 20240419. This issue affects so... |
| CVE-2024-4252 | HIGH | 8.8 | 1.5% | Apr 27, 2024 | A vulnerability classified as critical has been found in Tenda i22 1.0.0.3(4687). This affects the function formSetUrlFi... |
| CVE-2024-4251 | HIGH | 8.8 | 1.3% | Apr 27, 2024 | A vulnerability was found in Tenda i21 1.0.0.14(4656). It has been rated as critical. Affected by this issue is the func... |
| CVE-2024-4250 | HIGH | 8.8 | 1.3% | Apr 27, 2024 | A vulnerability was found in Tenda i21 1.0.0.14(4656). It has been declared as critical. Affected by this vulnerability ... |
| CVE-2024-4249 | HIGH | 8.8 | 1.3% | Apr 27, 2024 | A vulnerability was found in Tenda i21 1.0.0.14(4656). It has been classified as critical. Affected is the function form... |
| CVE-2024-25048 | HIGH | 7.5 | 0.9% | Apr 27, 2024 | IBM MQ Appliance 9.3 CD and LTS are vulnerable to a heap-based buffer overflow, caused by improper bounds checking. A re... |
| CVE-2024-4248 | HIGH | 8.8 | 1.3% | Apr 27, 2024 | A vulnerability was found in Tenda i21 1.0.0.14(4656) and classified as critical. This issue affects the function formQo... |
| CVE-2024-4247 | HIGH | 8.8 | 1.5% | Apr 27, 2024 | A vulnerability has been found in Tenda i21 1.0.0.14(4656) and classified as critical. This vulnerability affects the fu... |
| CVE-2024-4246 | HIGH | 8.8 | 1.3% | Apr 27, 2024 | A vulnerability, which was classified as critical, was found in Tenda i21 1.0.0.14(4656). This affects the function form... |
| CVE-2024-4245 | HIGH | 8.8 | 1.3% | Apr 27, 2024 | A vulnerability, which was classified as critical, has been found in Tenda i21 1.0.0.14(4656). Affected by this issue is... |
| CVE-2024-2859 | HIGH | 7.2 | 0.8% | Apr 27, 2024 | By default, SANnav OVA is shipped with root user login enabled. While protected by a password, access to root could exp... |
| CVE-2024-4244 | HIGH | 8.8 | 1.3% | Apr 26, 2024 | A vulnerability classified as critical was found in Tenda W9 1.0.0.7(4456). Affected by this vulnerability is the functi... |
| CVE-2024-4243 | HIGH | 8.8 | 1.3% | Apr 26, 2024 | A vulnerability classified as critical has been found in Tenda W9 1.0.0.7(4456). Affected is the function formwrlSSIDset... |
| CVE-2024-3052 | HIGH | 7.5 | 0.5% | Apr 26, 2024 | Malformed S2 Nonce Get command classes can be sent to crash the gateway. A hard reset is required to recover the gateway... |
| CVE-2024-3051 | HIGH | 7.5 | 0.5% | Apr 26, 2024 | Malformed Device Reset Locally command classes can be sent to temporarily deny service to an end device. Any frames sent... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now