2024 CVE Vulnerabilities
39,239 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-6672 | HIGH | 8.8 | 0.7% | Aug 29, 2024 | In WhatsUp Gold versions released before 2024.0.0, a SQL Injection vulnerability allows an authenticated low-privileged ... |
| CVE-2024-6671 | CRITICAL | 9.8 | 14.9% | Aug 29, 2024 | In WhatsUp Gold versions released before 2024.0.0, if the application is configured with only a single user, a SQL Injec... |
| CVE-2024-6670 | CRITICAL | 9.8 | 94.7% | Aug 29, 2024 | In WhatsUp Gold versions released before 2024.0.0, a SQL Injection vulnerability allows an unauthenticated attacker to r... |
| CVE-2024-45302 | HIGH | 7.8 | 0.3% | Aug 29, 2024 | RestSharp is a Simple REST and HTTP API Client for .NET. The second argument to `RestRequest.AddHeader` (the header valu... |
| CVE-2024-2502 | LOW | 2 | 0.2% | Aug 29, 2024 | An application can be configured to block boot attempts after consecutive tamper resets are detected, which may not occu... |
| CVE-2024-41349 | MEDIUM | 6.1 | 0.3% | Aug 29, 2024 | unmark 1.9.2 is vulnerable to Cross Site Scripting (XSS) via application/views/marks/add_by_url.php. |
| CVE-2024-41372 | CRITICAL | 9.8 | 0.5% | Aug 29, 2024 | Organizr v1.90 was discovered to contain a SQL injection vulnerability via chat/settyping.php. |
| CVE-2024-41371 | MEDIUM | 6.1 | 0.3% | Aug 29, 2024 | Organizr v1.90 is vulnerable to Cross Site Scripting (XSS) via api.php. |
| CVE-2024-41370 | CRITICAL | 9.8 | 0.5% | Aug 29, 2024 | Organizr v1.90 was discovered to contain a SQL injection vulnerability via chat/setlike.php. |
| CVE-2024-41369 | CRITICAL | 9.8 | 0.9% | Aug 29, 2024 | RPi-Jukebox-RFID v2.7.0 was discovered to contain a remote code execution (RCE) vulnerability via htdocs\inc.setWifi.php |
| CVE-2024-41368 | CRITICAL | 9.8 | 0.9% | Aug 29, 2024 | RPi-Jukebox-RFID v2.7.0 was discovered to contain a remote code execution (RCE) vulnerability via htdocs\inc.setWlanIpMa... |
| CVE-2024-41367 | CRITICAL | 9.8 | 0.9% | Aug 29, 2024 | RPi-Jukebox-RFID v2.7.0 was discovered to contain a remote code execution (RCE) vulnerability via htdocs\api\playlist\ap... |
| CVE-2024-41366 | CRITICAL | 9.8 | 0.9% | Aug 29, 2024 | RPi-Jukebox-RFID v2.7.0 was discovered to contain a remote code execution (RCE) vulnerability via htdocs\userScripts.php |
| CVE-2024-41364 | CRITICAL | 9.8 | 0.9% | Aug 29, 2024 | RPi-Jukebox-RFID v2.7.0 was discovered to contain a remote code execution (RCE) vulnerability via htdocs\trackEdit.php |
| CVE-2024-41361 | CRITICAL | 9.8 | 0.9% | Aug 29, 2024 | RPi-Jukebox-RFID v2.7.0 was discovered to contain a remote code execution (RCE) vulnerability via htdocs\manageFilesFold... |
| CVE-2024-41358 | MEDIUM | 6.1 | 1.5% | Aug 29, 2024 | phpipam 1.6 is vulnerable to Cross Site Scripting (XSS) via app\admin\import-export\import-load-data.php. |
| CVE-2024-41351 | MEDIUM | 6.1 | 0.3% | Aug 29, 2024 | bjyadmin commit a560fd5 is vulnerable to Cross Site Scripting (XSS) via Public/statics/umeditor1_2_3/php/getContent.php |
| CVE-2024-41350 | MEDIUM | 6.1 | 0.3% | Aug 29, 2024 | bjyadmin commit a560fd5 is vulnerable to Cross Site Scripting (XSS) via Public/statics/umeditor1_2_3/php/imageUp.php |
| CVE-2024-41348 | MEDIUM | 6.1 | 0.4% | Aug 29, 2024 | openflights commit 5234b5b is vulnerable to Cross-Site Scripting (XSS) via php/alsearch.php |
| CVE-2024-41347 | MEDIUM | 6.1 | 0.3% | Aug 29, 2024 | openflights commit 5234b5b is vulnerable to Cross-Site Scripting (XSS) via php/settings.php |
| CVE-2024-41346 | MEDIUM | 5.4 | 0.3% | Aug 29, 2024 | openflights commit 5234b5b is vulnerable to Cross-Site Scripting (XSS) via php/submit.php |
| CVE-2024-41345 | MEDIUM | 5.4 | 0.3% | Aug 29, 2024 | openflights commit 5234b5b is vulnerable to Cross-Site Scripting (XSS) via php/trip.php |
| CVE-2024-34019 | HIGH | 7.3 | 0.1% | Aug 29, 2024 | Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Snap Deploy ... |
| CVE-2024-34018 | MEDIUM | 5.5 | 0.1% | Aug 29, 2024 | Sensitive information disclosure due to insecure folder permissions. The following products are affected: Acronis Snap D... |
| CVE-2024-34017 | HIGH | 7.3 | 0.1% | Aug 29, 2024 | Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Snap Deploy ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now