2024 CVE Vulnerabilities
39,236 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-41512 | HIGH | 8.8 | 0.7% | Oct 4, 2024 | A SQL Injection vulnerability in "ccHandler.aspx" in all versions of CADClick v.1.11.0 and before allows remote attacker... |
| CVE-2024-41511 | LOW | 3.9 | 0.9% | Oct 4, 2024 | A Path Traversal (Local File Inclusion) vulnerability in "BinaryFileRedirector.ashx" in CADClick v1.11.0 and before allo... |
| CVE-2024-38040 | HIGH | 7.5 | 0.5% | Oct 4, 2024 | There is a local file inclusion vulnerability in Esri Portal for ArcGIS 11.2 and below that may allow a remote, unauthen... |
| CVE-2024-38039 | MEDIUM | 5.4 | 0.3% | Oct 4, 2024 | There is an HTML injection vulnerability in Esri Portal for ArcGIS versions 11.0 and below that may allow a remote, auth... |
| CVE-2024-38038 | MEDIUM | 6.1 | 0.3% | Oct 4, 2024 | There is a reflected XSS vulnerability in Esri Portal for ArcGIS versions 11.1 which may allow a remote, unauthenticated... |
| CVE-2024-38037 | MEDIUM | 6.1 | 0.3% | Oct 4, 2024 | There is an unvalidated redirect vulnerability in Esri Portal for ArcGIS 11.0 and below that may allow a remote, unauthe... |
| CVE-2024-38036 | MEDIUM | 5.4 | 0.6% | Oct 4, 2024 | There is a reflected XSS vulnerability in Esri Portal for ArcGIS versions 10.9.1 and below which may allow a remote, una... |
| CVE-2024-25707 | MEDIUM | 4.8 | 0.3% | Oct 4, 2024 | There is a reflected cross site scripting in Esri Portal for ArcGIS 11.1 and below on Windows and Linux x64 allows a rem... |
| CVE-2024-25702 | MEDIUM | 4.8 | 0.3% | Oct 4, 2024 | There is a stored Cross-site Scripting vulnerability in Esri Portal for ArcGIS Enterprise Sites versions 11.1 and below ... |
| CVE-2024-25701 | MEDIUM | 4.8 | 0.3% | Oct 4, 2024 | There is a stored Cross-site Scripting vulnerability in Esri Portal for ArcGIS Enterprise Experience Builder versions 11... |
| CVE-2024-25694 | MEDIUM | 4.8 | 0.3% | Oct 4, 2024 | There is a stored Cross-site Scripting vulnerability in Esri Portal for ArcGIS Enterprise versions 11.1 and below that m... |
| CVE-2024-25691 | MEDIUM | 6.1 | 0.3% | Oct 4, 2024 | There is a reflected XSS vulnerability in Esri Portal for ArcGIS versions 11.1 and below which may allow a remote, unaut... |
| CVE-2024-46486 | HIGH | 8 | 0.8% | Oct 4, 2024 | TP-LINK TL-WDR5620 v2.3 was discovered to contain a remote code execution (RCE) vulnerability via the httpProcDataSrv fu... |
| CVE-2024-46409 | MEDIUM | 5.4 | 0.3% | Oct 4, 2024 | A stored cross-site scripting (XSS) vulnerability in SeedDMS v6.0.28 allows attackers to execute arbitrary web scripts o... |
| CVE-2024-47769 | HIGH | 7.5 | 0.8% | Oct 4, 2024 | IDURAR is open source ERP CRM accounting invoicing software. The vulnerability exists in the corePublicRouter.js file. U... |
| CVE-2024-47768 | HIGH | 8.1 | 0.5% | Oct 4, 2024 | Lif Authentication Server is a server used by Lif to do various tasks regarding Lif accounts. This vulnerability has to ... |
| CVE-2024-47765 | MEDIUM | 6.1 | 0.4% | Oct 4, 2024 | Minecraft MOTD Parser is a PHP library to parse minecraft server motd. The HtmlGenerator class is subject to potential c... |
| CVE-2024-47183 | HIGH | 8.1 | 0.4% | Oct 4, 2024 | Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. If the Parse Ser... |
| CVE-2024-9515 | HIGH | 8.8 | 1.3% | Oct 4, 2024 | A vulnerability was found in D-Link DIR-605L 2.13B01 BETA. It has been classified as critical. This affects the function... |
| CVE-2024-9514 | HIGH | 8.8 | 1.4% | Oct 4, 2024 | A vulnerability was found in D-Link DIR-605L 2.13B01 BETA. It has been declared as critical. This vulnerability affects ... |
| CVE-2024-9410 | MEDIUM | 5.3 | 0.3% | Oct 4, 2024 | Ada.cx's Sentry configuration allowed for blind server-side request forgeries (SSRF) through the use of a data scraping ... |
| CVE-2024-9513 | LOW | 3.7 | 1.6% | Oct 4, 2024 | A vulnerability was found in Netadmin Software NetAdmin IAM up to 3.5 and classified as problematic. Affected by this is... |
| CVE-2024-9484 | MEDIUM | 5.5 | 0.1% | Oct 4, 2024 | An null-pointer-derefrence in the engine module in AVG/Avast Antivirus signature <24092400 released on 24/Sep/2024 on Ma... |
| CVE-2024-9483 | MEDIUM | 5.5 | 0.1% | Oct 4, 2024 | A null-pointer-dereference in the signature verification module in AVG/Avast Antivirus signature <24092400 released on 2... |
| CVE-2024-9482 | MEDIUM | 5.5 | 0.1% | Oct 4, 2024 | An out-of-bounds write in the engine module in AVG/Avast Antivirus signature <24092400 released on 24/Sep/2024 on MacOS ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now