2024 CVE Vulnerabilities
39,236 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-46564 | HIGH | 7.5 | 0.5% | Sep 18, 2024 | Draytek Vigor 3910 v4.3.2.6 was discovered to contain a buffer overflow in the sProfileName parameter at fextobj.cgi. Th... |
| CVE-2024-46561 | HIGH | 7.5 | 0.5% | Sep 18, 2024 | Draytek Vigor 3910 v4.3.2.6 was discovered to contain a buffer overflow in the queryret parameter at v2x00.cgi. This vul... |
| CVE-2024-46560 | HIGH | 7.5 | 0.5% | Sep 18, 2024 | Draytek Vigor 3910 v4.3.2.6 was discovered to contain a buffer overflow in the pub_key parameter at v2x00.cgi. This vuln... |
| CVE-2024-46559 | HIGH | 7.5 | 0.5% | Sep 18, 2024 | Draytek Vigor 3910 v4.3.2.6 was discovered to contain a buffer overflow in the sBPA_UsrNme parameter at inet15.cgi. This... |
| CVE-2024-46558 | HIGH | 7.5 | 0.5% | Sep 18, 2024 | Draytek Vigor 3910 v4.3.2.6 was discovered to contain a buffer overflow in the newProname parameter at v2x00.cgi. This v... |
| CVE-2024-46557 | HIGH | 7.5 | 0.5% | Sep 18, 2024 | Draytek Vigor 3910 v4.3.2.6 was discovered to contain a buffer overflow in the sProfileName parameter at v2x00.cgi. This... |
| CVE-2024-46556 | HIGH | 7.5 | 0.5% | Sep 18, 2024 | Draytek Vigor 3910 v4.3.2.6 was discovered to contain a buffer overflow in the sInRCSecret0 parameter at v2x00.cgi. This... |
| CVE-2024-46555 | HIGH | 7.5 | 0.5% | Sep 18, 2024 | Draytek Vigor 3910 v4.3.2.6 was discovered to contain a buffer overflow in the pb parameter at v2x00.cgi. This vulnerabi... |
| CVE-2024-46554 | HIGH | 7.5 | 0.5% | Sep 18, 2024 | Draytek Vigor 3910 v4.3.2.6 was discovered to contain a buffer overflow in the profname parameter at v2x00.cgi. This vul... |
| CVE-2024-46553 | HIGH | 7.5 | 0.5% | Sep 18, 2024 | Draytek Vigor 3910 v4.3.2.6 was discovered to contain a buffer overflow in the ipaddrmsk%d parameter at v2x00.cgi. This ... |
| CVE-2024-46552 | HIGH | 7.5 | 0.5% | Sep 18, 2024 | Draytek Vigor 3910 v4.3.2.6 was discovered to contain a buffer overflow in the sStRtMskShow parameter at ipstrt.cgi. Thi... |
| CVE-2024-46551 | HIGH | 7.5 | 0.5% | Sep 18, 2024 | Draytek Vigor 3910 v4.3.2.6 was discovered to contain a buffer overflow in the sBPA_Pwd parameter at inet15.cgi. This vu... |
| CVE-2024-46550 | HIGH | 7.5 | 0.5% | Sep 18, 2024 | Draytek Vigor 3910 v4.3.2.6 was discovered to contain a buffer overflow in the CGIbyFieldName parameter at chglog.cgi. T... |
| CVE-2024-45858 | HIGH | 7.8 | 0.4% | Sep 18, 2024 | An arbitrary code execution vulnerability exists in versions 0.2.9 up to 0.5.10 of the Guardrails AI Guardrails framewor... |
| CVE-2024-44542 | CRITICAL | 9.8 | 1.1% | Sep 18, 2024 | SQL Injection vulnerability in todesk v.1.1 allows a remote attacker to execute arbitrary code via the /todesk.com/news.... |
| CVE-2024-39590 | HIGH | 7.5 | 1.0% | Sep 18, 2024 | Multiple invalid pointer dereference vulnerabilities exist in the OpenPLC Runtime EtherNet/IP parser functionality of Op... |
| CVE-2024-39589 | HIGH | 7.5 | 1.0% | Sep 18, 2024 | Multiple invalid pointer dereference vulnerabilities exist in the OpenPLC Runtime EtherNet/IP parser functionality of Op... |
| CVE-2024-36981 | HIGH | 7.5 | 1.0% | Sep 18, 2024 | An out-of-bounds read vulnerability exists in the OpenPLC Runtime EtherNet/IP PCCC parser functionality of OpenPLC_v3 b4... |
| CVE-2024-36980 | HIGH | 7.5 | 1.1% | Sep 18, 2024 | An out-of-bounds read vulnerability exists in the OpenPLC Runtime EtherNet/IP PCCC parser functionality of OpenPLC_v3 b4... |
| CVE-2024-35515 | CRITICAL | 9.8 | 0.9% | Sep 18, 2024 | Insecure deserialization in sqlitedict up to v2.1.0 allows attackers to execute arbitrary code. |
| CVE-2024-34026 | CRITICAL | 9.8 | 2.4% | Sep 18, 2024 | A stack-based buffer overflow vulnerability exists in the OpenPLC Runtime EtherNet/IP parser functionality of OpenPLC _v... |
| CVE-2024-8891 | MEDIUM | 5.3 | 0.3% | Sep 18, 2024 | An attacker with no knowledge of the current users in the web application, could build a dictionary of potential users a... |
| CVE-2024-39081 | MEDIUM | 4.2 | 0.5% | Sep 18, 2024 | An issue in SMART TYRE CAR & BIKE v4.2.0 allows attackers to perform a man-in-the-middle attack via Bluetooth communicat... |
| CVE-2024-31198 | HIGH | 7.5 | 0.3% | Sep 18, 2024 | Out-of-bounds Read vulnerability in Open Networking Foundation (ONF) libfluid (libfluid_msg module). This vulnerability ... |
| CVE-2024-31197 | HIGH | 7.5 | 0.3% | Sep 18, 2024 | Improper Null Termination vulnerability in Open Networking Foundation (ONF) libfluid (libfluid_msg module). This vulnera... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now