2024 CVE Vulnerabilities
39,240 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-6833 | MEDIUM | 5.9 | 0.1% | Jul 17, 2024 | A vulnerability in Zowe CLI allows local, privileged actors to store previously entered secure credentials in a plaintex... |
| CVE-2024-29120 | MEDIUM | 5.9 | 0.3% | Jul 17, 2024 | In Streampark (version < 2.1.4), when a user logged in successfully, the Backend service would return "Authorization" as... |
| CVE-2024-28993 | HIGH | 8.3 | 1.0% | Jul 17, 2024 | The SolarWinds Access Rights Manager was susceptible to a Directory Traversal and Information Disclosure Vulnerability. ... |
| CVE-2024-28992 | HIGH | 8.3 | 1.9% | Jul 17, 2024 | The SolarWinds Access Rights Manager was susceptible to a Directory Traversal and Information Disclosure Vulnerability. ... |
| CVE-2024-28074 | HIGH | 8.8 | 10.9% | Jul 17, 2024 | It was discovered that a previous vulnerability was not completely fixed with SolarWinds Access Rights Manager. While so... |
| CVE-2024-23475 | HIGH | 8.8 | 2.1% | Jul 17, 2024 | The SolarWinds Access Rights Manager was susceptible to a Directory Traversal and Information Disclosure Vulnerability. ... |
| CVE-2024-23474 | HIGH | 8.8 | 1.5% | Jul 17, 2024 | The SolarWinds Access Rights Manager was found to be susceptible to an Arbitrary File Deletion and Information Disclosur... |
| CVE-2024-23472 | HIGH | 8 | 18.6% | Jul 17, 2024 | SolarWinds Access Rights Manager (ARM) is susceptible to Directory Traversal vulnerability. This vulnerability allows an... |
| CVE-2024-23471 | HIGH | 8.8 | 1.3% | Jul 17, 2024 | The SolarWinds Access Rights Manager was found to be susceptible to a Remote Code Execution Vulnerability. If exploited,... |
| CVE-2024-23470 | HIGH | 8.8 | 1.2% | Jul 17, 2024 | The SolarWinds Access Rights Manager was found to be susceptible to a pre-authentication remote code execution vulnerabi... |
| CVE-2024-23469 | HIGH | 8.8 | 17.9% | Jul 17, 2024 | SolarWinds Access Rights Manager (ARM) is susceptible to a Remote Code Execution vulnerability. If exploited, this vulne... |
| CVE-2024-23468 | HIGH | 8.3 | 3.4% | Jul 17, 2024 | The SolarWinds Access Rights Manager was susceptible to a Directory Traversal and Information Disclosure Vulnerability. ... |
| CVE-2024-23467 | HIGH | 8.8 | 2.9% | Jul 17, 2024 | The SolarWinds Access Rights Manager was susceptible to a Directory Traversal and Information Disclosure Vulnerability. ... |
| CVE-2024-23466 | HIGH | 8.8 | 2.5% | Jul 17, 2024 | SolarWinds Access Rights Manager (ARM) is susceptible to a Directory Traversal Remote Code Execution vulnerability. If e... |
| CVE-2024-23465 | HIGH | 8.8 | 1.9% | Jul 17, 2024 | The SolarWinds Access Rights Manager was found to be susceptible to an authentication bypass vulnerability. This vulnera... |
| CVE-2024-6765 | — | — | — | Jul 17, 2024 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2024-5471 | CRITICAL | 9.8 | 2.5% | Jul 17, 2024 | Zohocorp ManageEngine DDI Central versions 4001 and prior were vulnerable to agent takeover vulnerability due to the har... |
| CVE-2024-27311 | HIGH | 8.8 | 1.5% | Jul 17, 2024 | Zohocorp ManageEngine DDI Central versions 4001 and prior were vulnerable to directory traversal vulnerability which all... |
| CVE-2024-31411 | HIGH | 8.8 | 1.1% | Jul 17, 2024 | Unrestricted Upload of File with dangerous type vulnerability in Apache StreamPipes. Such a dangerous type might be an e... |
| CVE-2024-40617 | MEDIUM | 6.5 | 1.4% | Jul 17, 2024 | Path traversal vulnerability exists in FUJITSU Network Edgiot GW1500 (M2M-GW for FENICS). If a remote authenticated atta... |
| CVE-2024-36491 | CRITICAL | 9.8 | 0.7% | Jul 17, 2024 | FutureNet NXR series, VXR series and WXR series provided by Century Systems Co., Ltd. allow an administrative user to ex... |
| CVE-2024-36475 | HIGH | 8.8 | 0.6% | Jul 17, 2024 | FutureNet NXR series, VXR series and WXR series provided by Century Systems Co., Ltd. contain an active debug code vulne... |
| CVE-2024-31979 | MEDIUM | 4.3 | 0.7% | Jul 17, 2024 | Server-Side Request Forgery (SSRF) vulnerability in Apache StreamPipes during installation process of pipeline elements.... |
| CVE-2024-31070 | CRITICAL | 9.1 | 0.8% | Jul 17, 2024 | Initialization of a resource with an insecure default vulnerability in FutureNet NXR series, VXR series and WXR series p... |
| CVE-2024-30471 | LOW | 3.7 | 0.7% | Jul 17, 2024 | Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Apache StreamPipes in user self-registration. This al... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now