2024 CVE Vulnerabilities

39,240 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-42966CRITICAL9.8Incorrect access control in TOTOLINK N350RT V9.3.5u.6139_B20201216 allows attackers to obtain the apmib configuration fi...
CVE-2024-42955HIGH7.5Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the page parameter in the fromSafeClientFilt...
CVE-2024-42954HIGH7.5Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the page parameter in the fromwebExcptypeman...
CVE-2024-42953HIGH7.5Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the PPW parameter in the fromWizardHandle fu...
CVE-2024-42952HIGH7.5Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the page parameter in the fromqossetting fun...
CVE-2024-42951HIGH7.5Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the mit_pptpusrpw parameter in the fromWizar...
CVE-2024-42950HIGH7.5Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the Go parameter in the fromSafeClientFilter...
CVE-2024-42949HIGH7.5Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the qos parameter in the fromqossetting func...
CVE-2024-42948HIGH7.5Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the delno parameter in the fromPptpUserSetti...
CVE-2024-42947CRITICAL9.8An issue in the handler function in /goform/telnet of Tenda FH1201 v1.2.0.14 (408) allows attackers to execute arbitrary...
CVE-2024-42946HIGH7.5Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the page parameter in the fromVirtualSer fun...
CVE-2024-42945HIGH7.5Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the page parameter in the fromAddressNat fun...
CVE-2024-42944HIGH7.5Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the page parameter in the fromNatlimit funct...
CVE-2024-42943HIGH7.5Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the PPPOEPassword parameter in the fromAdvSe...
CVE-2024-42942HIGH7.5Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the page parameter in the frmL7ImForm functi...
CVE-2024-42941HIGH7.5Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the wanmode parameter in the fromAdvSetWan f...
CVE-2024-42940HIGH7.5Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the page parameter in the fromP2pListFilter ...
CVE-2024-42843CRITICAL9.8Projectworlds Online Examination System v1.0 is vulnerable to SQL Injection via the subject parameter in feed.php.
CVE-2024-42681HIGH8.8Insecure Permissions vulnerability in xxl-job v.2.4.1 allows a remote attacker to execute arbitrary code via the Sub-Tas...
CVE-2024-40705MEDIUM6.5IBM InfoSphere Information Server could allow an authenticated user to consume file space resources due to unrestricted ...
CVE-2024-40704MEDIUM4.9IBM InfoSphere Information Server 11.7 could allow a privileged user to obtain sensitive information from authentication...
CVE-2024-31905MEDIUM5.9IBM QRadar Network Packet Capture 7.5 could allow a remote attacker to obtain sensitive information, caused by the failu...
CVE-2024-31800MEDIUM6.8Authentication Bypass in GNCC's GC2 Indoor Security Camera 1080P allows an attacker with physical access to gain a privi...
CVE-2024-31799MEDIUM4.6Information Disclosure in GNCC's GC2 Indoor Security Camera 1080P allows an attacker with physical access to read the Wi...
CVE-2024-31798MEDIUM6.8Identical Hardcoded Root Password for All Devices in GNCC's GC2 Indoor Security Camera 1080P allows an attacker with phy...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now