2024 CVE Vulnerabilities
39,228 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-51558 | CRITICAL | 9.8 | 0.5% | Nov 4, 2024 | This vulnerability exists in the Wave 2.0 due to missing restrictions for excessive failed authentication attempts on it... |
| CVE-2024-51557 | MEDIUM | 6.5 | 0.4% | Nov 4, 2024 | This vulnerability exists in the Wave 2.0 due to missing rate limiting on OTP requests in an API endpoint. An authentica... |
| CVE-2024-51556 | MEDIUM | 6.5 | 0.2% | Nov 4, 2024 | This vulnerability exists in the Wave 2.0 due to insufficient encryption of sensitive data received at the API response.... |
| CVE-2024-36485 | HIGH | 8.8 | 1.5% | Nov 4, 2024 | Zohocorp ManageEngine ADAudit Plus versions below 8121 are vulnerable to SQL Injection in Technician reports option. |
| CVE-2024-10523 | MEDIUM | 4.6 | 0.1% | Nov 4, 2024 | This vulnerability exists in TP-Link IoT Smart Hub due to storage of Wi-Fi credentials in plain text within the device f... |
| CVE-2024-10035 | CRITICAL | 9.8 | 0.8% | Nov 4, 2024 | Improper Control of Generation of Code ('Code Injection'), Improper Neutralization of Special Elements used in a Command... |
| CVE-2024-51661 | HIGH | 7.2 | 1.1% | Nov 4, 2024 | Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in David Lingre... |
| CVE-2024-48878 | HIGH | 8.8 | 1.5% | Nov 4, 2024 | Zohocorp ManageEngine ADManager Plus versions 7241 and prior are vulnerable to SQL Injection in Archived Audit Report. |
| CVE-2024-10389 | HIGH | 7.5 | 0.2% | Nov 4, 2024 | There exists a Path Traversal vulnerability in Safearchive on Platforms with Case-Insensitive Filesystems (e.g., NTFS). ... |
| CVE-2024-38424 | HIGH | 7.8 | 0.1% | Nov 4, 2024 | Memory corruption during GNSS HAL process initialization. |
| CVE-2024-38423 | HIGH | 7.8 | 0.1% | Nov 4, 2024 | Memory corruption while processing GPU page table switch. |
| CVE-2024-38422 | HIGH | 7.8 | 0.1% | Nov 4, 2024 | Memory corruption while processing voice packet with arbitrary data received from ADSP. |
| CVE-2024-38421 | HIGH | 7.8 | 0.1% | Nov 4, 2024 | Memory corruption while processing GPU commands. |
| CVE-2024-38419 | HIGH | 7.8 | 0.1% | Nov 4, 2024 | Memory corruption while invoking IOCTL calls from the use-space for HGSL memory node. |
| CVE-2024-38415 | HIGH | 7.8 | 0.1% | Nov 4, 2024 | Memory corruption while handling session errors from firmware. |
| CVE-2024-38410 | HIGH | 7.8 | 0.1% | Nov 4, 2024 | Memory corruption while IOCLT is called when device is in invalid state and the WMI command buffer may be freed twice. |
| CVE-2024-38409 | HIGH | 7.8 | 0.1% | Nov 4, 2024 | Memory corruption while station LL statistic handling. |
| CVE-2024-38408 | CRITICAL | 9.1 | 0.1% | Nov 4, 2024 | Cryptographic issue when a controller receives an LMP start encryption command under unexpected conditions. |
| CVE-2024-38407 | HIGH | 7 | 0.1% | Nov 4, 2024 | Memory corruption while processing input parameters for any IOCTL call in the JPEG Encoder driver. |
| CVE-2024-38406 | HIGH | 7 | 0.1% | Nov 4, 2024 | Memory corruption while handling IOCTL calls in JPEG Encoder driver. |
| CVE-2024-38405 | MEDIUM | 6.5 | 0.2% | Nov 4, 2024 | Transient DOS while processing the CU information from RNR IE. |
| CVE-2024-38403 | MEDIUM | 6.5 | 0.2% | Nov 4, 2024 | Transient DOS while parsing BTM ML IE when per STA profile is not included. |
| CVE-2024-33068 | MEDIUM | 6.5 | 0.2% | Nov 4, 2024 | Transient DOS while parsing fragments of MBSSID IE from beacon frame. |
| CVE-2024-33033 | HIGH | 7.8 | 0.1% | Nov 4, 2024 | Memory corruption while processing IOCTL calls to unmap the buffers. |
| CVE-2024-33032 | MEDIUM | 6.7 | 0.1% | Nov 4, 2024 | Memory corruption when the user application modifies the same shared memory asynchronously when kernel is accessing it. |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now