2024 CVE Vulnerabilities
39,239 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-34658 | HIGH | 7.1 | 0.2% | Sep 4, 2024 | Out-of-bounds read in Samsung Notes allows local attackers to bypass ASLR. |
| CVE-2024-34657 | CRITICAL | 9.8 | 0.6% | Sep 4, 2024 | Stack-based out-of-bounds write in Samsung Notes prior to version 4.4.21.62 allows remote attackers to execute arbitrary... |
| CVE-2024-34656 | HIGH | 7.8 | 0.2% | Sep 4, 2024 | Path traversal in Samsung Notes prior to version 4.4.21.62 allows local attackers to execute arbitrary code. |
| CVE-2024-34655 | MEDIUM | 5.5 | 0.1% | Sep 4, 2024 | Incorrect use of privileged API in UniversalCredentialManager prior to SMR Sep-2024 Release 1 allows local attackers to ... |
| CVE-2024-34654 | MEDIUM | 5.5 | 0.1% | Sep 4, 2024 | Improper Export of android application component in My Files prior to SMR Sep-2024 Release 1 allows local attackers to a... |
| CVE-2024-34653 | MEDIUM | 4.6 | 0.3% | Sep 4, 2024 | Path Traversal in My Files prior to SMR Sep-2024 Release 1 allows physical attackers to access directories with My Files... |
| CVE-2024-34652 | LOW | 3.3 | 0.1% | Sep 4, 2024 | Incorrect authorization in kperfmon prior to SMR Sep-2024 Release 1 allows local attackers to access information related... |
| CVE-2024-34651 | MEDIUM | 5.5 | 0.1% | Sep 4, 2024 | Improper authorization in My Files prior to SMR Sep-2024 Release 1 allows local attackers to access restricted data in M... |
| CVE-2024-34650 | LOW | 3.3 | 0.1% | Sep 4, 2024 | Incorrect authorization in CocktailbarService prior to SMR Sep-2024 Release 1 allows local attackers to access privilege... |
| CVE-2024-34649 | LOW | 2.4 | 0.2% | Sep 4, 2024 | Improper access control in new Dex Mode in multitasking framework prior to SMR Sep-2024 Release 1 allows physical attack... |
| CVE-2024-34648 | MEDIUM | 5.5 | 0.1% | Sep 4, 2024 | Improper Handling of Insufficient Permissions in KnoxMiscPolicy prior to SMR Sep-2024 Release 1 allows local attackers t... |
| CVE-2024-34647 | MEDIUM | 5.5 | 0.1% | Sep 4, 2024 | Incorrect use of privileged API in DualDarManagerProxy prior to SMR Sep-2024 Release 1 allows local attackers to access ... |
| CVE-2024-34646 | MEDIUM | 5.5 | 0.1% | Sep 4, 2024 | Improper access control in DualDarManagerProxy prior to SMR Sep-2024 Release 1 allows local attackers to cause local per... |
| CVE-2024-34645 | MEDIUM | 4.6 | 0.2% | Sep 4, 2024 | Improper input validation in ThemeCenter prior to SMR Sep-2024 Release 1 allows physical attackers to install privileged... |
| CVE-2024-34644 | MEDIUM | 5.5 | 0.1% | Sep 4, 2024 | Improper access control in item selection related in Dressroom prior to SMR Sep-2024 Release 1 allows local attackers to... |
| CVE-2024-34643 | MEDIUM | 5.5 | 0.2% | Sep 4, 2024 | Improper access control in key input related function in Dressroom prior to SMR Sep-2024 Release 1 allows local attacker... |
| CVE-2024-34642 | MEDIUM | 4.6 | 0.2% | Sep 4, 2024 | Improper authorization in One UI Home prior to SMR Sep-2024 Release 1 allows physical attackers to temporarily access se... |
| CVE-2024-34641 | LOW | 3.3 | 0.1% | Sep 4, 2024 | Improper Export of Android Application Components in FeliCaTest prior to SMR Sep-2024 Release 1 allows local attackers t... |
| CVE-2024-34640 | LOW | 3.3 | 0.1% | Sep 4, 2024 | Improper access control vulnerability in BGProtectManager prior to SMR Sep-2024 Release 1 allows local attackers to bypa... |
| CVE-2024-34639 | MEDIUM | 4.6 | 0.2% | Sep 4, 2024 | Improper handling of exceptional conditions in Setupwizard prior to SMR Aug-2024 Release 1 allows physical attackers to ... |
| CVE-2024-34638 | HIGH | 7.1 | 0.1% | Sep 4, 2024 | Improper handling of exceptional conditions in ThemeCenter prior to SMR Sep-2024 Release 1 allows local attackers to del... |
| CVE-2024-34637 | MEDIUM | 5.5 | 0.1% | Sep 4, 2024 | Improper access control in WindowManagerService prior to SMR Sep-2024 Release 1 in Android 12, and SMR Jun-2024 Release ... |
| CVE-2024-8298 | MEDIUM | 5.5 | 0.1% | Sep 4, 2024 | Memory request vulnerability in the memory management module Impact: Successful exploitation of this vulnerability may a... |
| CVE-2024-7950 | CRITICAL | 9.8 | 1.2% | Sep 4, 2024 | The WP Job Portal – A Complete Recruitment System for Company or Job Board website plugin for WordPress is vulnerable to... |
| CVE-2024-45449 | MEDIUM | 5.5 | 0.1% | Sep 4, 2024 | Access permission verification vulnerability in the ringtone setting module Impact: Successful exploitation of this vuln... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now