2024 CVE Vulnerabilities
39,218 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-9536 | CRITICAL | 9.8 | 0.6% | Oct 5, 2024 | A vulnerability was found in ESAFENET CDG V5. It has been rated as critical. Affected by this issue is some unknown func... |
| CVE-2024-44014 | CRITICAL | 9.6 | 0.5% | Oct 5, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Vmax Studio Vmax Project... |
| CVE-2024-47849 | CRITICAL | 9.8 | 0.5% | Oct 5, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in The Wikimedia Foun... |
| CVE-2024-43685 | CRITICAL | 9.8 | 0.4% | Oct 4, 2024 | Improper Authentication vulnerability in Microchip TimeProvider 4100 (login modules) allows Session Hijacking.This issue... |
| CVE-2024-47656 | CRITICAL | 9.8 | 0.5% | Oct 4, 2024 | This vulnerability exists in Shilpi Client Dashboard due to missing restrictions for incorrect login attempts on its API... |
| CVE-2024-45367 | CRITICAL | 9.3 | 0.5% | Oct 3, 2024 | The web server for ONS-S8 - Spectra Aggregation Switch includes an incomplete authentication process, which can lead to ... |
| CVE-2024-43699 | CRITICAL | 9.8 | 0.5% | Oct 3, 2024 | Delta Electronics DIAEnergie is vulnerable to an SQL injection in the script AM_RegReport.aspx. An unauthenticated attac... |
| CVE-2024-41925 | CRITICAL | 9.8 | 0.7% | Oct 3, 2024 | The web service for ONS-S8 - Spectra Aggregation Switch includes functions which do not properly validate user input, al... |
| CVE-2024-41593 | CRITICAL | 9.8 | 0.9% | Oct 3, 2024 | DrayTek Vigor310 devices through 4.3.2.6 allow a remote attacker to execute arbitrary code via the function ft_payload_d... |
| CVE-2024-41988 | CRITICAL | 9.3 | 0.6% | Oct 3, 2024 | TEM Opera Plus FM Family Transmitter allows access to an unprotected endpoint that allows MPFS File System binary image ... |
| CVE-2024-7826 | CRITICAL | 9.8 | 0.4% | Oct 3, 2024 | Improper Check for Unusual or Exceptional Conditions vulnerability in Webroot SecureAnywhere - Web Shield on Windows, AR... |
| CVE-2024-7825 | CRITICAL | 9.8 | 0.4% | Oct 3, 2024 | Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in Webroot SecureAnywhere - Web Shield on Wi... |
| CVE-2024-7824 | CRITICAL | 9.8 | 0.4% | Oct 3, 2024 | Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in Webroot SecureAnywhere - Web Shield on Wi... |
| CVE-2024-9460 | CRITICAL | 9.8 | 0.7% | Oct 3, 2024 | A vulnerability was found in Codezips Online Shopping Portal 1.0. It has been classified as critical. Affected is an unk... |
| CVE-2024-47561 | CRITICAL | 9.2 | 3.3% | Oct 3, 2024 | Schema parsing in the Java SDK of Apache Avro 1.11.3 and previous versions allows bad actors to execute arbitrary code. ... |
| CVE-2024-45519 | CRITICAL | 9.8 | 100.0% | Oct 2, 2024 | The postjournal service in Zimbra Collaboration (ZCS) before 8.8.15 Patch 46, 9 before 9.0.0 Patch 41, 10 before 10.0.9,... |
| CVE-2024-24117 | CRITICAL | 9.8 | 0.6% | Oct 2, 2024 | Insecure Permissions vulnerability in Ruijie RG-NBS2009G-P RGOS v.10.4(1)P2 Release (9736) allows a remote attacker to g... |
| CVE-2024-9441 | CRITICAL | 9.8 | 53.7% | Oct 2, 2024 | The Linear eMerge e3-Series through version 1.00-07 is vulnerable to an OS command injection vulnerability. A remote and... |
| CVE-2024-24116 | CRITICAL | 9.8 | 24.1% | Oct 2, 2024 | An issue in Ruijie RG-NBS2009G-P RGOS v.10.4(1)P2 Release(9736) allows a remote attacker to gain privileges via the syst... |
| CVE-2024-20521 | CRITICAL | 9.1 | 0.7% | Oct 2, 2024 | A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers co... |
| CVE-2024-20520 | CRITICAL | 9.1 | 0.6% | Oct 2, 2024 | A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers co... |
| CVE-2024-20519 | CRITICAL | 9.1 | 0.6% | Oct 2, 2024 | A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers co... |
| CVE-2024-20518 | CRITICAL | 9.1 | 0.6% | Oct 2, 2024 | A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers co... |
| CVE-2024-6360 | CRITICAL | 9.8 | 0.3% | Oct 2, 2024 | Incorrect Permission Assignment for Critical Resource vulnerability in OpenText™ Vertica could allow Privilege Abuse and... |
| CVE-2024-44097 | CRITICAL | 9.8 | 0.2% | Oct 2, 2024 | According to the researcher: "The TLS connections are encrypted against tampering or eavesdropping. However, the applica... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now