2024 CVE Vulnerabilities
39,236 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-7698 | MEDIUM | 5.7 | 0.4% | Sep 10, 2024 | A low privileged remote attacker can get access to CSRF tokens of higher privileged users which can be abused to mount C... |
| CVE-2024-43393 | HIGH | 8.1 | 0.5% | Sep 10, 2024 | A low privileged remote attacker can perform configuration changes of the firewall services, including packet filter, pa... |
| CVE-2024-43392 | HIGH | 8.1 | 0.5% | Sep 10, 2024 | A low privileged remote attacker can perform configuration changes of the firewall services, including packet filter, pa... |
| CVE-2024-43391 | HIGH | 8.1 | 0.5% | Sep 10, 2024 | A low privileged remote attacker can perform configuration changes of the firewall services, including packet filter, pa... |
| CVE-2024-43390 | HIGH | 8.1 | 0.5% | Sep 10, 2024 | A low privileged remote attacker can perform configuration changes of the firewall services, including packet forwarding... |
| CVE-2024-43389 | HIGH | 8.1 | 0.5% | Sep 10, 2024 | A low privileged remote attacker can perform configuration changes of the ospf service through OSPF_INTERFACE.SIMPLE_KEY... |
| CVE-2024-43388 | HIGH | 8.8 | 0.6% | Sep 10, 2024 | A low privileged remote attacker with write permissions can reconfigure the SNMP service due to improper input validatio... |
| CVE-2024-43387 | HIGH | 8.8 | 0.6% | Sep 10, 2024 | A low privileged remote attacker can read and write files as root due to improper neutralization of special elements in ... |
| CVE-2024-43386 | HIGH | 8.8 | 0.7% | Sep 10, 2024 | A low privileged remote attacker can trigger the execution of arbitrary OS commands as root due to improper neutralizati... |
| CVE-2024-43385 | HIGH | 8.8 | 0.7% | Sep 10, 2024 | A low privileged remote attacker can trigger the execution of arbitrary OS commands as root due to improper neutralizati... |
| CVE-2024-42425 | MEDIUM | 5.5 | 0.1% | Sep 10, 2024 | Dell Precision Rack, 14G Intel BIOS versions prior to 2.22.2, contains an Access of Memory Location After End of Buffer ... |
| CVE-2024-39583 | CRITICAL | 9.8 | 0.3% | Sep 10, 2024 | Dell PowerScale InsightIQ, versions 5.0 through 5.1, contains a Use of a Broken or Risky Cryptographic Algorithm vulnera... |
| CVE-2024-39582 | MEDIUM | 4.4 | 0.1% | Sep 10, 2024 | Dell PowerScale InsightIQ, version 5.0, contain a Use of hard coded Credentials vulnerability. A high privileged attacke... |
| CVE-2024-39581 | CRITICAL | 9.8 | 0.4% | Sep 10, 2024 | Dell PowerScale InsightIQ, versions 5.0 through 5.1, contains a File or Directories Accessible to External Parties vulne... |
| CVE-2024-39580 | MEDIUM | 6.7 | 0.1% | Sep 10, 2024 | Dell PowerScale InsightIQ, versions 5.0 through 5.1, contains an Improper Access Control vulnerability. A high privilege... |
| CVE-2024-39574 | MEDIUM | 4.4 | 0.1% | Sep 10, 2024 | Dell PowerScale InsightIQ, version 5.1, contain an Improper Privilege Management vulnerability. A high privileged attack... |
| CVE-2024-7734 | MEDIUM | 5.3 | 0.5% | Sep 10, 2024 | An unauthenticated remote attacker can exploit the behavior of the pathfinder TCP encapsulation service by establishing ... |
| CVE-2024-7655 | MEDIUM | 4.8 | 0.3% | Sep 10, 2024 | The Community by PeepSo – Social Network, Membership, Registration, User Profiles plugin for WordPress is vulnerable to ... |
| CVE-2024-7618 | MEDIUM | 4.8 | 0.3% | Sep 10, 2024 | The Community by PeepSo – Social Network, Membership, Registration, User Profiles plugin for WordPress is vulnerable to ... |
| CVE-2024-6596 | CRITICAL | 9.8 | 0.8% | Sep 10, 2024 | An unauthenticated remote attacker can run malicious c# code included in curve files and execute commands in the users c... |
| CVE-2024-42427 | HIGH | 7.6 | 1.1% | Sep 10, 2024 | Dell ThinOS versions 2402 and 2405, contains an Improper Neutralization of Special Elements used in a Command ('Command ... |
| CVE-2024-42424 | MEDIUM | 6 | 0.1% | Sep 10, 2024 | Dell Precision Rack, 14G Intel BIOS versions prior to 2.22.2, contains an Improper Input Validation vulnerability. A hig... |
| CVE-2024-44072 | MEDIUM | 5.7 | 0.6% | Sep 10, 2024 | OS command injection vulnerability exists in BUFFALO wireless LAN routers and wireless LAN repeaters. If a user logs in ... |
| CVE-2024-7955 | MEDIUM | 4.8 | 0.4% | Sep 10, 2024 | The Starbox WordPress plugin before 3.5.2 does not sanitise and escape some of its settings, which could allow high pri... |
| CVE-2024-7891 | MEDIUM | 4.8 | 0.3% | Sep 10, 2024 | The Floating Contact Button WordPress plugin before 2.8 does not sanitise and escape some of its settings, which could a... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now