2024 CVE Vulnerabilities
39,218 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-49832 | HIGH | 7.8 | 0.1% | Feb 3, 2025 | Memory corruption in Camera due to unusually high number of nodes passed to AXI port. |
| CVE-2024-45584 | HIGH | 7.8 | 0.1% | Feb 3, 2025 | Memory corruption can occur when a compat IOCTL call is followed by a normal IOCTL call from userspace. |
| CVE-2024-45582 | HIGH | 7.8 | 0.1% | Feb 3, 2025 | Memory corruption while validating number of devices in Camera kernel . |
| CVE-2024-45573 | HIGH | 7.8 | 0.1% | Feb 3, 2025 | Memory corruption may occour while generating test pattern due to negative indexing of display ID. |
| CVE-2024-45571 | HIGH | 7.8 | 0.1% | Feb 3, 2025 | Memory corruption may occour occur when stopping the WLAN interface after processing a WMI command from the interface. |
| CVE-2024-45561 | HIGH | 7.8 | 0.1% | Feb 3, 2025 | Memory corruption while handling IOCTL call from user-space to set latency level. |
| CVE-2024-45560 | HIGH | 7 | 0.1% | Feb 3, 2025 | Memory corruption while taking a snapshot with hardware encoder due to unvalidated userspace buffer. |
| CVE-2024-38420 | HIGH | 7.8 | 0.1% | Feb 3, 2025 | Memory corruption while configuring a Hypervisor based input virtual device. |
| CVE-2024-38418 | HIGH | 7 | 0.1% | Feb 3, 2025 | Memory corruption while parsing the memory map info in IOCTL calls. |
| CVE-2024-38413 | HIGH | 7.8 | 0.1% | Feb 3, 2025 | Memory corruption while processing frame packets. |
| CVE-2024-38412 | HIGH | 7.8 | 0.1% | Feb 3, 2025 | Memory corruption while invoking IOCTL calls from user-space to kernel-space to handle session errors. |
| CVE-2024-38411 | HIGH | 7.8 | 0.1% | Feb 3, 2025 | Memory corruption while registering a buffer from user-space to kernel-space using IOCTL calls. |
| CVE-2024-38404 | HIGH | 7.5 | 0.2% | Feb 3, 2025 | Transient DOS when registration accept OTA is received with incorrect ciphering key data IE in modem. |
| CVE-2024-43333 | HIGH | 7.5 | 0.5% | Feb 3, 2025 | Incorrect Privilege Assignment vulnerability in NotFound Admin and Site Enhancements (ASE) Pro allows Privilege Escalati... |
| CVE-2024-10395 | HIGH | 7.5 | 0.3% | Feb 3, 2025 | No proper validation of the length of user input in http_server_get_content_type_from_extension. |
| CVE-2024-53295 | HIGH | 7.8 | 0.1% | Feb 1, 2025 | Dell PowerProtect DD versions prior to 8.3.0.0, 7.10.1.50, and 7.13.1.20 contain an improper access control vulnerabilit... |
| CVE-2024-51534 | HIGH | 7.1 | 0.2% | Feb 1, 2025 | Dell PowerProtect DD versions prior to DDOS 8.3.0.0, 7.10.1.50, and 7.13.1.20 contain a path traversal vulnerability. A ... |
| CVE-2024-13343 | HIGH | 8.8 | 0.4% | Feb 1, 2025 | The WooCommerce Customers Manager plugin for WordPress is vulnerable to Privilege Escalation due to a missing capability... |
| CVE-2024-12171 | HIGH | 8.8 | 0.5% | Feb 1, 2025 | The ELEX WordPress HelpDesk & Customer Ticketing System plugin for WordPress is vulnerable to privilege escalation due t... |
| CVE-2024-57434 | HIGH | 8.8 | 0.4% | Jan 31, 2025 | macrozheng mall-tiny 1.0.1 is vulnerable to Incorrect Access Control. The project imports users by default, and the test... |
| CVE-2024-57433 | HIGH | 7.5 | 0.4% | Jan 31, 2025 | macrozheng mall-tiny 1.0.1 is vulnerable to Incorrect Access Control via the logout function. After a user logs out, the... |
| CVE-2024-53357 | HIGH | 7.5 | 0.5% | Jan 31, 2025 | Multiple SQL injection vulnerabilities in EasyVirt DCScope <= 8.6.0 and CO2Scope <= 1.3.0 allows remote authenticated at... |
| CVE-2024-53355 | HIGH | 8.8 | 0.5% | Jan 31, 2025 | Multiple incorrect access control issues in EasyVirt DCScope <= 8.6.0 and CO2Scope <= 1.3.0 allows remote authenticated ... |
| CVE-2024-57432 | HIGH | 7.5 | 0.5% | Jan 31, 2025 | macrozheng mall-tiny 1.0.1 suffers from Insecure Permissions. The application's JWT signing keys are hardcoded and do no... |
| CVE-2024-53582 | HIGH | 7.5 | 3.1% | Jan 31, 2025 | An issue found in the Copy and View functions in the File Manager component of OpenPanel v0.3.4 allows attackers to exec... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now