2024 CVE Vulnerabilities
39,240 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-42966 | CRITICAL | 9.8 | 0.6% | Aug 15, 2024 | Incorrect access control in TOTOLINK N350RT V9.3.5u.6139_B20201216 allows attackers to obtain the apmib configuration fi... |
| CVE-2024-42955 | HIGH | 7.5 | 0.6% | Aug 15, 2024 | Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the page parameter in the fromSafeClientFilt... |
| CVE-2024-42954 | HIGH | 7.5 | 0.6% | Aug 15, 2024 | Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the page parameter in the fromwebExcptypeman... |
| CVE-2024-42953 | HIGH | 7.5 | 0.6% | Aug 15, 2024 | Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the PPW parameter in the fromWizardHandle fu... |
| CVE-2024-42952 | HIGH | 7.5 | 0.6% | Aug 15, 2024 | Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the page parameter in the fromqossetting fun... |
| CVE-2024-42951 | HIGH | 7.5 | 0.6% | Aug 15, 2024 | Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the mit_pptpusrpw parameter in the fromWizar... |
| CVE-2024-42950 | HIGH | 7.5 | 0.6% | Aug 15, 2024 | Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the Go parameter in the fromSafeClientFilter... |
| CVE-2024-42949 | HIGH | 7.5 | 0.6% | Aug 15, 2024 | Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the qos parameter in the fromqossetting func... |
| CVE-2024-42948 | HIGH | 7.5 | 10.7% | Aug 15, 2024 | Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the delno parameter in the fromPptpUserSetti... |
| CVE-2024-42947 | CRITICAL | 9.8 | 1.0% | Aug 15, 2024 | An issue in the handler function in /goform/telnet of Tenda FH1201 v1.2.0.14 (408) allows attackers to execute arbitrary... |
| CVE-2024-42946 | HIGH | 7.5 | 0.7% | Aug 15, 2024 | Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the page parameter in the fromVirtualSer fun... |
| CVE-2024-42945 | HIGH | 7.5 | 0.7% | Aug 15, 2024 | Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the page parameter in the fromAddressNat fun... |
| CVE-2024-42944 | HIGH | 7.5 | 0.7% | Aug 15, 2024 | Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the page parameter in the fromNatlimit funct... |
| CVE-2024-42943 | HIGH | 7.5 | 0.7% | Aug 15, 2024 | Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the PPPOEPassword parameter in the fromAdvSe... |
| CVE-2024-42942 | HIGH | 7.5 | 0.7% | Aug 15, 2024 | Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the page parameter in the frmL7ImForm functi... |
| CVE-2024-42941 | HIGH | 7.5 | 0.7% | Aug 15, 2024 | Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the wanmode parameter in the fromAdvSetWan f... |
| CVE-2024-42940 | HIGH | 7.5 | 0.7% | Aug 15, 2024 | Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the page parameter in the fromP2pListFilter ... |
| CVE-2024-42843 | CRITICAL | 9.8 | 0.6% | Aug 15, 2024 | Projectworlds Online Examination System v1.0 is vulnerable to SQL Injection via the subject parameter in feed.php. |
| CVE-2024-42681 | HIGH | 8.8 | 0.9% | Aug 15, 2024 | Insecure Permissions vulnerability in xxl-job v.2.4.1 allows a remote attacker to execute arbitrary code via the Sub-Tas... |
| CVE-2024-40705 | MEDIUM | 6.5 | 0.6% | Aug 15, 2024 | IBM InfoSphere Information Server could allow an authenticated user to consume file space resources due to unrestricted ... |
| CVE-2024-40704 | MEDIUM | 4.9 | 0.6% | Aug 15, 2024 | IBM InfoSphere Information Server 11.7 could allow a privileged user to obtain sensitive information from authentication... |
| CVE-2024-31905 | MEDIUM | 5.9 | 0.3% | Aug 15, 2024 | IBM QRadar Network Packet Capture 7.5 could allow a remote attacker to obtain sensitive information, caused by the failu... |
| CVE-2024-31800 | MEDIUM | 6.8 | 0.4% | Aug 15, 2024 | Authentication Bypass in GNCC's GC2 Indoor Security Camera 1080P allows an attacker with physical access to gain a privi... |
| CVE-2024-31799 | MEDIUM | 4.6 | 0.3% | Aug 15, 2024 | Information Disclosure in GNCC's GC2 Indoor Security Camera 1080P allows an attacker with physical access to read the Wi... |
| CVE-2024-31798 | MEDIUM | 6.8 | 0.4% | Aug 15, 2024 | Identical Hardcoded Root Password for All Devices in GNCC's GC2 Indoor Security Camera 1080P allows an attacker with phy... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now