2024 CVE Vulnerabilities
39,236 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-8503 | CRITICAL | 9.8 | 79.1% | Sep 10, 2024 | An unauthenticated attacker can leverage a time-based SQL injection vulnerability in VICIdial to enumerate database reco... |
| CVE-2024-8232 | HIGH | 8.7 | 13.1% | Sep 10, 2024 | SpiderControl SCADA Web Server has a vulnerability that could allow an attacker to upload specially crafted malicious f... |
| CVE-2024-43040 | CRITICAL | 9.1 | 0.4% | Sep 10, 2024 | Renwoxing Enterprise Intelligent Management System before v3.0 was discovered to contain a SQL injection vulnerability v... |
| CVE-2024-45596 | MEDIUM | 6.5 | 0.6% | Sep 10, 2024 | Directus is a real-time API and App dashboard for managing SQL database content. An unauthenticated user can access cred... |
| CVE-2024-45409 | CRITICAL | 9.8 | 10.7% | Sep 10, 2024 | The Ruby SAML library is for implementing the client side of a SAML authorization. Ruby-SAML in <= 12.2 and 1.13.0 <= 1.... |
| CVE-2024-34831 | MEDIUM | 6.1 | 0.9% | Sep 10, 2024 | cross-site scripting (XSS) vulnerability in Gibbon Core v26.0.00 allows an attacker to execute arbitrary code via the im... |
| CVE-2024-44893 | CRITICAL | 9.8 | 0.5% | Sep 10, 2024 | An issue in the component /jeecg-boot/jmreport/dict/list of JimuReport v1.7.8 allows attacker to escalate privileges via... |
| CVE-2024-44872 | MEDIUM | 6.1 | 0.4% | Sep 10, 2024 | A reflected cross-site scripting (XSS) vulnerability in moziloCMS v3.0 allows attackers to execute arbitrary code in the... |
| CVE-2024-44871 | HIGH | 7.2 | 16.2% | Sep 10, 2024 | An arbitrary file upload vulnerability in the component /admin/index.php of moziloCMS v3.0 allows attackers to execute a... |
| CVE-2024-44667 | HIGH | 8 | 0.6% | Sep 10, 2024 | Shenzhen Haichangxing Technology Co., Ltd HCX H822 4G LTE Router M7628NNxISPxUIv2_v1.0.1557.15.35_P0 is vulnerable to In... |
| CVE-2024-43495 | HIGH | 7.3 | 0.9% | Sep 10, 2024 | Windows libarchive Remote Code Execution Vulnerability |
| CVE-2024-43492 | HIGH | 7.8 | 0.5% | Sep 10, 2024 | Microsoft AutoUpdate (MAU) Elevation of Privilege Vulnerability |
| CVE-2024-43491 | CRITICAL | 9.8 | 12.1% | Sep 10, 2024 | Microsoft is aware of a vulnerability in Servicing Stack that has rolled back the fixes for some vulnerabilities affecti... |
| CVE-2024-43487 | MEDIUM | 6.5 | 1.2% | Sep 10, 2024 | Windows Mark of the Web Security Feature Bypass Vulnerability |
| CVE-2024-43482 | MEDIUM | 6.5 | 1.1% | Sep 10, 2024 | Microsoft Outlook for iOS Information Disclosure Vulnerability |
| CVE-2024-43479 | HIGH | 8.5 | 0.9% | Sep 10, 2024 | Microsoft Power Automate Desktop Remote Code Execution Vulnerability |
| CVE-2024-43476 | MEDIUM | 5.4 | 0.8% | Sep 10, 2024 | Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability |
| CVE-2024-43475 | HIGH | 7.3 | 1.7% | Sep 10, 2024 | Microsoft Windows Admin Center Information Disclosure Vulnerability |
| CVE-2024-43474 | HIGH | 7.5 | 1.3% | Sep 10, 2024 | Microsoft SQL Server Information Disclosure Vulnerability |
| CVE-2024-43470 | HIGH | 7.3 | 0.9% | Sep 10, 2024 | Azure Network Watcher VM Agent Elevation of Privilege Vulnerability |
| CVE-2024-43469 | HIGH | 8.8 | 1.6% | Sep 10, 2024 | Azure CycleCloud Remote Code Execution Vulnerability |
| CVE-2024-43467 | HIGH | 7.5 | 1.1% | Sep 10, 2024 | Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability |
| CVE-2024-43466 | HIGH | 7.5 | 4.5% | Sep 10, 2024 | Microsoft SharePoint Server Denial of Service Vulnerability |
| CVE-2024-43465 | HIGH | 7.8 | 0.8% | Sep 10, 2024 | Microsoft Excel Elevation of Privilege Vulnerability |
| CVE-2024-43464 | HIGH | 7.2 | 35.9% | Sep 10, 2024 | Microsoft SharePoint Server Remote Code Execution Vulnerability |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now