2024 CVE Vulnerabilities
39,235 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-46914 | — | — | — | Oct 22, 2024 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and... |
| CVE-2024-46483 | CRITICAL | 9.8 | 1.1% | Oct 22, 2024 | Xlight FTP Server <3.9.4.3 has an integer overflow vulnerability in the packet parsing logic of the SFTP server, which c... |
| CVE-2024-46482 | HIGH | 8.2 | 0.3% | Oct 22, 2024 | An arbitrary file upload vulnerability in the Ticket Generation function of Ladybird Web Solution Faveo-Helpdesk v2.0.3 ... |
| CVE-2024-44812 | CRITICAL | 9.8 | 1.2% | Oct 22, 2024 | SQL Injection vulnerability in Online Complaint Site v.1.0 allows a remote attacker to escalate privileges via the usern... |
| CVE-2024-44331 | HIGH | 7.5 | 0.7% | Oct 22, 2024 | Incorrect Access Control in GStreamer RTSP server 1.25.0 in gst-rtsp-server/rtsp-media.c allows remote attackers to caus... |
| CVE-2024-43812 | HIGH | 8.6 | 0.2% | Oct 22, 2024 | Kieback & Peter's DDC4000 series has an insufficiently protected credentials vulnerability, which may allow an unauthent... |
| CVE-2024-43698 | CRITICAL | 9.8 | 0.4% | Oct 22, 2024 | Kieback & Peter's DDC4000 series uses weak credentials, which may allow an unauthenticated attacker to get full admin ri... |
| CVE-2024-42643 | HIGH | 7.5 | 0.6% | Oct 22, 2024 | Integer Overflow in fast_ping.c in SmartDNS Release46 allows remote attackers to cause a Denial of Service via misaligne... |
| CVE-2024-41717 | CRITICAL | 9.8 | 0.6% | Oct 22, 2024 | Kieback & Peter's DDC4000 series is vulnerable to a path traversal vulnerability, which may allow an unauthenticated att... |
| CVE-2024-40494 | CRITICAL | 9.8 | 1.1% | Oct 22, 2024 | Buffer Overflow in coap_msg.c in FreeCoAP allows remote attackers to execute arbitrary code or cause a denial of service... |
| CVE-2024-40493 | CRITICAL | 9.8 | 0.8% | Oct 22, 2024 | Null Pointer Dereference in `coap_client_exchange_blockwise2` function in Keith Cullen FreeCoAP 1.0 allows remote attack... |
| CVE-2024-31029 | HIGH | 8.2 | 0.5% | Oct 22, 2024 | An issue in the server_handle_regular function of the test_coap_server.c file within the FreeCoAP project allows remote ... |
| CVE-2024-26519 | CRITICAL | 9 | 0.3% | Oct 22, 2024 | An issue in Casa Systems NTC-221 version 2.0.99.0 and before allows a remote attacker to execute arbitrary code via a cr... |
| CVE-2024-10231 | HIGH | 8.8 | 0.5% | Oct 22, 2024 | Type Confusion in V8 in Google Chrome prior to 130.0.6723.69 allowed a remote attacker to potentially exploit heap corru... |
| CVE-2024-10230 | HIGH | 8.8 | 0.6% | Oct 22, 2024 | Type Confusion in V8 in Google Chrome prior to 130.0.6723.69 allowed a remote attacker to potentially exploit heap corru... |
| CVE-2024-10229 | HIGH | 8.1 | 0.5% | Oct 22, 2024 | Inappropriate implementation in Extensions in Google Chrome prior to 130.0.6723.69 allowed a remote attacker to bypass s... |
| CVE-2024-48919 | CRITICAL | 9.2 | 0.5% | Oct 22, 2024 | Cursor is a code editor built for programming with AI. Prior to Sep 27, 2024, if a user generated a terminal command via... |
| CVE-2024-45526 | MEDIUM | 5.3 | 0.5% | Oct 22, 2024 | An issue was discovered in OPC Foundation OPCFoundation/UA-.NETStandard through 1.5.374.78. A remote attacker can send r... |
| CVE-2024-48904 | CRITICAL | 9.8 | 2.5% | Oct 22, 2024 | An command injection vulnerability in Trend Micro Cloud Edge could allow a remote attacker to execute arbitrary code on ... |
| CVE-2024-48903 | HIGH | 7.8 | 0.7% | Oct 22, 2024 | An improper access control vulnerability in Trend Micro Deep Security Agent 20 could allow a local attacker to escalate ... |
| CVE-2024-46903 | MEDIUM | 6.5 | 1.2% | Oct 22, 2024 | A vulnerability in Trend Micro Deep Discovery Inspector (DDI) versions 5.8 and above could allow an attacker to disclose... |
| CVE-2024-46902 | CRITICAL | 9.1 | 1.9% | Oct 22, 2024 | A vulnerability in Trend Micro Deep Discovery Inspector (DDI) versions 5.8 and above could allow an attacker to disclose... |
| CVE-2024-45335 | MEDIUM | 5.5 | 0.2% | Oct 22, 2024 | Trend Micro Antivirus One, version 3.10.4 and below contains a vulnerability that could allow an attacker to use a speci... |
| CVE-2024-45334 | HIGH | 7.8 | 0.1% | Oct 22, 2024 | Trend Micro Antivirus One versions 3.10.4 and below (Consumer) is vulnerable to an Arbitrary Configuration Update that c... |
| CVE-2024-41183 | HIGH | 7.8 | 1.0% | Oct 22, 2024 | Trend Micro VPN, version 5.8.1012 and below is vulnerable to an arbitrary file overwrite under specific conditions that ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now