2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-33498 | MEDIUM | 6.9 | 0.6% | May 14, 2024 | A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions < V3.0.1.1), SIMATIC ... |
| CVE-2024-33497 | MEDIUM | 6.3 | 0.2% | May 14, 2024 | A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions < V3.0.1.1), SIMATIC ... |
| CVE-2024-33496 | MEDIUM | 6.3 | 0.2% | May 14, 2024 | A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions < V3.0.1.1), SIMATIC ... |
| CVE-2024-33494 | MEDIUM | 6.9 | 0.3% | May 14, 2024 | A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions < V3.0.1.1), SIMATIC ... |
| CVE-2024-33009 | MEDIUM | 4.2 | 0.3% | May 14, 2024 | SAP Global Label Management is vulnerable to SQL injection. On exploitation the attacker can use specially crafted input... |
| CVE-2024-33008 | MEDIUM | 4.9 | 0.5% | May 14, 2024 | SAP Replication Server allows an attacker to use gateway for executing some commands to RSSD. This could result in crash... |
| CVE-2024-33004 | MEDIUM | 4.3 | 0.2% | May 14, 2024 | SAP Business Objects Business Intelligence Platform is vulnerable to Insecure Storage as dynamic web pages are getting c... |
| CVE-2024-33002 | MEDIUM | 6.1 | 0.3% | May 14, 2024 | Document Service handler (obsolete) in Data Provisioning Service does not sufficiently encode user-controlled inputs, re... |
| CVE-2024-32733 | MEDIUM | 6.1 | 0.4% | May 14, 2024 | Due to missing input validation and output encoding of untrusted data, SAP NetWeaver Application Server ABAP and ABAP P... |
| CVE-2024-32731 | MEDIUM | 5.5 | 0.4% | May 14, 2024 | SAP My Travel Requests does not perform necessary authorization checks for an authenticated user, resulting in escalati... |
| CVE-2024-32637 | MEDIUM | 5.5 | 0.2% | May 14, 2024 | A vulnerability has been identified in JT2Go (All versions < V2312.0005), Teamcenter Visualization V14.2 (All versions <... |
| CVE-2024-32354 | MEDIUM | 6 | 1.0% | May 14, 2024 | TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain a command injection vulnerability via the 'timeout' pa... |
| CVE-2024-32349 | MEDIUM | 6 | 0.9% | May 14, 2024 | TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an authenticated remote command execution (RCE) vulner... |
| CVE-2024-32077 | MEDIUM | 5.4 | 1.6% | May 14, 2024 | Apache Airflow version 2.9.0 has a vulnerability that allows an authenticated attacker to inject malicious data into the... |
| CVE-2024-31486 | MEDIUM | 6 | 0.5% | May 14, 2024 | A vulnerability has been identified in OPUPI0 AMQP/MQTT (All versions < V5.30). The affected devices stores MQTT client ... |
| CVE-2024-30208 | MEDIUM | 6.3 | 0.2% | May 14, 2024 | A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions < V3.0.1.1), SIMATIC ... |
| CVE-2024-28135 | MEDIUM | 5 | 1.3% | May 14, 2024 | A low privileged remote attacker can use a command injection vulnerability in the API which performs remote code executi... |
| CVE-2024-27947 | MEDIUM | 5.3 | 0.6% | May 14, 2024 | A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.5). The affected systems could allow log me... |
| CVE-2024-27946 | MEDIUM | 6.5 | 0.9% | May 14, 2024 | A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.5). Downloading files overwrites files with... |
| CVE-2024-26367 | MEDIUM | 6.1 | 0.9% | May 14, 2024 | Cross Site Scripting vulnerability in Evertz microsystems MViP-II Firmware 8.6.5, XPS-EDGE-* Build 1467, evEDGE-EO-* Bui... |
| CVE-2024-25970 | MEDIUM | 6.5 | 0.7% | May 14, 2024 | Dell PowerScale OneFS versions 8.2.x through 9.7.0.1 contains an improper input validation vulnerability. A low privileg... |
| CVE-2024-25969 | MEDIUM | 5.5 | 0.2% | May 14, 2024 | Dell PowerScale OneFS versions 8.2.x through 9.7.0.1 contains an allocation of resources without limits or throttling vu... |
| CVE-2024-25967 | MEDIUM | 6.7 | 0.3% | May 14, 2024 | Dell PowerScale OneFS versions 8.2.x through 9.7.0.1 contains an execution with unnecessary privileges vulnerability. A ... |
| CVE-2024-25965 | MEDIUM | 4.4 | 0.2% | May 14, 2024 | Dell PowerScale OneFS versions 8.2.x through 9.7.0.2 contains an external control of file name or path vulnerability. A ... |
| CVE-2024-22270 | MEDIUM | 6 | 0.5% | May 14, 2024 | VMware Workstation and Fusion contain an information disclosure vulnerability in the Host Guest File Sharing (HGFS) func... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now