2024 CVE Vulnerabilities
39,236 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-20519 | CRITICAL | 9.1 | 0.6% | Oct 2, 2024 | A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers co... |
| CVE-2024-20518 | CRITICAL | 9.1 | 0.6% | Oct 2, 2024 | A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers co... |
| CVE-2024-20517 | MEDIUM | 6.8 | 0.4% | Oct 2, 2024 | A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers co... |
| CVE-2024-20516 | MEDIUM | 6.8 | 0.4% | Oct 2, 2024 | A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers co... |
| CVE-2024-20515 | MEDIUM | 6.5 | 0.3% | Oct 2, 2024 | A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticat... |
| CVE-2024-20492 | MEDIUM | 6.7 | 0.5% | Oct 2, 2024 | A vulnerability in the restricted shell of Cisco Expressway Series could allow an authenticated, local attacker to perfo... |
| CVE-2024-20491 | HIGH | 8.6 | 0.3% | Oct 2, 2024 | A vulnerability in a logging function of Cisco Nexus Dashboard Insights could allow an attacker with access to a tech su... |
| CVE-2024-20490 | HIGH | 8.6 | 0.3% | Oct 2, 2024 | A vulnerability in a logging function of Cisco Nexus Dashboard Fabric Controller (NDFC) and Cisco Nexus Dashboard Orches... |
| CVE-2024-20477 | MEDIUM | 5.4 | 0.5% | Oct 2, 2024 | A vulnerability in a specific REST API endpoint of Cisco NDFC could allow an authenticated, low-privileged, remote attac... |
| CVE-2024-20470 | HIGH | 7.2 | 0.6% | Oct 2, 2024 | A vulnerability in the web-based management interface of Cisco Small Business RV340, RV340W, RV345, and RV345P Dual WAN ... |
| CVE-2024-20449 | HIGH | 8.8 | 0.9% | Oct 2, 2024 | A vulnerability in Cisco Nexus Dashboard Fabric Controller (NDFC) could allow an authenticated, remote attacker with low... |
| CVE-2024-20448 | HIGH | 8.6 | 0.1% | Oct 2, 2024 | A vulnerability in the Cisco Nexus Dashboard Fabric Controller (NDFC) software, formerly Cisco Data Center Network Manag... |
| CVE-2024-20444 | MEDIUM | 5.5 | 0.8% | Oct 2, 2024 | A vulnerability in Cisco Nexus Dashboard Fabric Controller (NDFC), formerly Cisco Data Center Network Manager (DCNM), co... |
| CVE-2024-20442 | MEDIUM | 5.4 | 0.4% | Oct 2, 2024 | A vulnerability in the REST API endpoints of Cisco Nexus Dashboard could allow an authenticated, low-privileged, remote ... |
| CVE-2024-20441 | MEDIUM | 6.5 | 0.5% | Oct 2, 2024 | A vulnerability in a specific REST API endpoint of Cisco NDFC could allow an authenticated, low-privileged, remote attac... |
| CVE-2024-20438 | MEDIUM | 5.4 | 0.4% | Oct 2, 2024 | A vulnerability in the REST API endpoints of Cisco NDFC could allow an authenticated, low-privileged, remote attacker to... |
| CVE-2024-20432 | HIGH | 8.8 | 1.1% | Oct 2, 2024 | A vulnerability in the REST API and web UI of Cisco Nexus Dashboard Fabric Controller (NDFC) could allow an authenticate... |
| CVE-2024-20393 | HIGH | 8.8 | 0.6% | Oct 2, 2024 | A vulnerability in the web-based management interface of Cisco Small Business RV340, RV340W, RV345, and RV345P Dual WAN ... |
| CVE-2024-20385 | MEDIUM | 5.9 | 0.3% | Oct 2, 2024 | A vulnerability in the SSL/TLS implementation of Cisco Nexus Dashboard Orchestrator (NDO) could allow an unauthenticated... |
| CVE-2024-20365 | HIGH | 7.2 | 0.9% | Oct 2, 2024 | A vulnerability in the Redfish API of Cisco UCS B-Series, Cisco UCS Managed C-Series, and Cisco UCS X-Series Servers cou... |
| CVE-2024-9423 | MEDIUM | 5.3 | 0.5% | Oct 2, 2024 | Certain HP LaserJet printers may potentially experience a denial of service when a user sends a raw JPEG file to the pri... |
| CVE-2024-6360 | CRITICAL | 9.8 | 0.3% | Oct 2, 2024 | Incorrect Permission Assignment for Critical Resource vulnerability in OpenText™ Vertica could allow Privilege Abuse and... |
| CVE-2024-47807 | HIGH | 8.1 | 0.6% | Oct 2, 2024 | Jenkins OpenId Connect Authentication Plugin 4.354.v321ce67a_1de8 and earlier does not check the `iss` (Issuer) claim of... |
| CVE-2024-47806 | HIGH | 8.1 | 0.6% | Oct 2, 2024 | Jenkins OpenId Connect Authentication Plugin 4.354.v321ce67a_1de8 and earlier does not check the `aud` (Audience) claim ... |
| CVE-2024-47805 | HIGH | 7.5 | 0.6% | Oct 2, 2024 | Jenkins Credentials Plugin 1380.va_435002fa_924 and earlier, except 1371.1373.v4eb_fa_b_7161e9, does not redact encrypte... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now