2024 CVE Vulnerabilities
39,236 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-8705 | MEDIUM | 6.3 | 0.4% | Sep 11, 2024 | A vulnerability was found in Shandong Star Measurement and Control Equipment Heating Network Wireless Monitoring System ... |
| CVE-2024-7890 | HIGH | 7.3 | 0.2% | Sep 11, 2024 | Local privilege escalation allows a low-privileged user to gain SYSTEM privileges in Citrix Workspace app for Windows |
| CVE-2024-7889 | HIGH | 7.3 | 0.2% | Sep 11, 2024 | Local privilege escalation allows a low-privileged user to gain SYSTEM privileges in Citrix Workspace app for Windows |
| CVE-2024-8694 | MEDIUM | 5.1 | 0.8% | Sep 11, 2024 | A vulnerability, which was classified as problematic, was found in JFinalCMS up to 20240903. This affects the function u... |
| CVE-2024-8693 | MEDIUM | 5.1 | 0.3% | Sep 11, 2024 | A vulnerability, which was classified as problematic, has been found in Kaon CG3000 1.01.43. Affected by this issue is s... |
| CVE-2024-8692 | CRITICAL | 9.8 | 0.5% | Sep 11, 2024 | A vulnerability classified as critical was found in TDuckCloud TDuckPro up to 6.3. Affected by this vulnerability is an ... |
| CVE-2024-44541 | CRITICAL | 9.8 | 2.6% | Sep 11, 2024 | evilnapsis Inventio Lite Versions v4 and before is vulnerable to SQL Injection via the "username" parameter in "/?action... |
| CVE-2024-42760 | HIGH | 7.5 | 0.6% | Sep 11, 2024 | SQL Injection vulnerability in Ellevo v.6.2.0.38160 allows a remote attacker to obtain sensitive information via the /ap... |
| CVE-2024-8691 | HIGH | 7.1 | 0.3% | Sep 11, 2024 | A vulnerability in the GlobalProtect portal in Palo Alto Networks PAN-OS software enables a malicious authenticated Glob... |
| CVE-2024-8690 | MEDIUM | 4.4 | 0.2% | Sep 11, 2024 | A problem with a detection mechanism in the Palo Alto Networks Cortex XDR agent on Windows devices enables a user with W... |
| CVE-2024-8689 | MEDIUM | 6 | 0.2% | Sep 11, 2024 | A problem with the ActiveMQ integration for both Cortex XSOAR and Cortex XSIAM can result in the cleartext exposure of t... |
| CVE-2024-8688 | MEDIUM | 4.4 | 0.2% | Sep 11, 2024 | An improper neutralization of matching symbols vulnerability in the Palo Alto Networks PAN-OS command line interface (CL... |
| CVE-2024-8687 | HIGH | 7.1 | 0.4% | Sep 11, 2024 | An information exposure vulnerability exists in Palo Alto Networks PAN-OS software that enables a GlobalProtect end user... |
| CVE-2024-8686 | HIGH | 7.2 | 1.4% | Sep 11, 2024 | A command injection vulnerability in Palo Alto Networks PAN-OS software enables an authenticated administrator to bypass... |
| CVE-2024-8097 | MEDIUM | 6.7 | 0.2% | Sep 11, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Payara Platform Payara Server (Logging modul... |
| CVE-2024-44577 | HIGH | 8.8 | 1.1% | Sep 11, 2024 | RELY-PCIe v22.2.1 to v23.1.0 was discovered to contain a command injection vulnerability via the time_date function. |
| CVE-2024-44575 | LOW | 3.7 | 0.3% | Sep 11, 2024 | RELY-PCIe v22.2.1 to v23.1.0 does not set the Secure attribute for sensitive cookies in HTTPS sessions, which could caus... |
| CVE-2024-44574 | HIGH | 8.8 | 1.1% | Sep 11, 2024 | RELY-PCIe v22.2.1 to v23.1.0 was discovered to contain a command injection vulnerability via the sys_conf function. |
| CVE-2024-44573 | MEDIUM | 4.7 | 0.3% | Sep 11, 2024 | A stored cross-site scripting (XSS) vulnerability in the VLAN configuration of RELY-PCIe v22.2.1 to v23.1.0 allows attac... |
| CVE-2024-44572 | HIGH | 8.8 | 1.1% | Sep 11, 2024 | RELY-PCIe v22.2.1 to v23.1.0 was discovered to contain a command injection vulnerability via the sys_mgmt function. |
| CVE-2024-44571 | HIGH | 8.8 | 0.4% | Sep 11, 2024 | RELY-PCIe v22.2.1 to v23.1.0 was discovered to contain incorrect access control in the mService function at phpinf.php. |
| CVE-2024-44570 | HIGH | 8.8 | 0.5% | Sep 11, 2024 | RELY-PCIe v22.2.1 to v23.1.0 was discovered to contain a code injection vulnerability via the getParams function in phpi... |
| CVE-2024-20489 | MEDIUM | 5.5 | 0.1% | Sep 11, 2024 | A vulnerability in the storage method of the PON Controller configuration file could allow an authenticated, local attac... |
| CVE-2024-20483 | HIGH | 7.2 | 1.1% | Sep 11, 2024 | Multiple vulnerabilities in Cisco Routed PON Controller Software, which runs as a docker container on hardware that is s... |
| CVE-2024-20406 | HIGH | 7.4 | 0.2% | Sep 11, 2024 | A vulnerability in the segment routing feature for the Intermediate System-to-Intermediate System (IS-IS) protocol of Ci... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now