2024 CVE Vulnerabilities

39,236 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-7698MEDIUM5.7A low privileged remote attacker can get access to CSRF tokens of higher privileged users which can be abused to mount C...
CVE-2024-43393HIGH8.1A low privileged remote attacker can perform configuration changes of the firewall services, including packet filter, pa...
CVE-2024-43392HIGH8.1A low privileged remote attacker can perform configuration changes of the firewall services, including packet filter, pa...
CVE-2024-43391HIGH8.1A low privileged remote attacker can perform configuration changes of the firewall services, including packet filter, pa...
CVE-2024-43390HIGH8.1A low privileged remote attacker can perform configuration changes of the firewall services, including packet forwarding...
CVE-2024-43389HIGH8.1A low privileged remote attacker can perform configuration changes of the ospf service through OSPF_INTERFACE.SIMPLE_KEY...
CVE-2024-43388HIGH8.8A low privileged remote attacker with write permissions can reconfigure the SNMP service due to improper input validatio...
CVE-2024-43387HIGH8.8A low privileged remote attacker can read and write files as root due to improper neutralization of special elements in ...
CVE-2024-43386HIGH8.8A low privileged remote attacker can trigger the execution of arbitrary OS commands as root due to improper neutralizati...
CVE-2024-43385HIGH8.8A low privileged remote attacker can trigger the execution of arbitrary OS commands as root due to improper neutralizati...
CVE-2024-42425MEDIUM5.5Dell Precision Rack, 14G Intel BIOS versions prior to 2.22.2, contains an Access of Memory Location After End of Buffer ...
CVE-2024-39583CRITICAL9.8Dell PowerScale InsightIQ, versions 5.0 through 5.1, contains a Use of a Broken or Risky Cryptographic Algorithm vulnera...
CVE-2024-39582MEDIUM4.4Dell PowerScale InsightIQ, version 5.0, contain a Use of hard coded Credentials vulnerability. A high privileged attacke...
CVE-2024-39581CRITICAL9.8Dell PowerScale InsightIQ, versions 5.0 through 5.1, contains a File or Directories Accessible to External Parties vulne...
CVE-2024-39580MEDIUM6.7Dell PowerScale InsightIQ, versions 5.0 through 5.1, contains an Improper Access Control vulnerability. A high privilege...
CVE-2024-39574MEDIUM4.4Dell PowerScale InsightIQ, version 5.1, contain an Improper Privilege Management vulnerability. A high privileged attack...
CVE-2024-7734MEDIUM5.3An unauthenticated remote attacker can exploit the behavior of the pathfinder TCP encapsulation service by establishing ...
CVE-2024-7655MEDIUM4.8The Community by PeepSo – Social Network, Membership, Registration, User Profiles plugin for WordPress is vulnerable to ...
CVE-2024-7618MEDIUM4.8The Community by PeepSo – Social Network, Membership, Registration, User Profiles plugin for WordPress is vulnerable to ...
CVE-2024-6596CRITICAL9.8An unauthenticated remote attacker can run malicious c# code included in curve files and execute commands in the users c...
CVE-2024-42427HIGH7.6Dell ThinOS versions 2402 and 2405, contains an Improper Neutralization of Special Elements used in a Command ('Command ...
CVE-2024-42424MEDIUM6Dell Precision Rack, 14G Intel BIOS versions prior to 2.22.2, contains an Improper Input Validation vulnerability. A hig...
CVE-2024-44072MEDIUM5.7OS command injection vulnerability exists in BUFFALO wireless LAN routers and wireless LAN repeaters. If a user logs in ...
CVE-2024-7955MEDIUM4.8The Starbox WordPress plugin before 3.5.2 does not sanitise and escape some of its settings, which could allow high pri...
CVE-2024-7891MEDIUM4.8The Floating Contact Button WordPress plugin before 2.8 does not sanitise and escape some of its settings, which could a...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now