2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-9157 | HIGH | 7.8 | 0.3% | Mar 11, 2025 | ** UNSUPPORTED WHEN ASSIGNED ** A privilege escalation vulnerability in CxUIUSvc64.exe and CxUIUSvc32.exe of Synaptics... |
| CVE-2024-56338 | MEDIUM | 4.8 | 0.3% | Mar 11, 2025 | IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.6 and 6.2.0.0 through 6.2.0.3 is vulnerable to cross-... |
| CVE-2024-55597 | HIGH | 7.2 | 0.5% | Mar 11, 2025 | A improper limitation of a pathname to a restricted directory ('path traversal') in Fortinet FortiWeb versions 7.0.0 thr... |
| CVE-2024-55592 | LOW | 3.8 | 0.2% | Mar 11, 2025 | An incorrect authorization vulnerability [CWE-863] in FortiSIEM 7.2 all versions, 7.1 all versions, 7.0 all versions, 6.... |
| CVE-2024-55590 | HIGH | 8.8 | 1.0% | Mar 11, 2025 | Multiple improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerabilities [CWE... |
| CVE-2024-54026 | HIGH | 8.8 | 0.4% | Mar 11, 2025 | An improper neutralization of special elements used in an sql command ('sql injection') in Fortinet FortiSandbox 4.4.0 t... |
| CVE-2024-54018 | HIGH | 7.2 | 9.2% | Mar 11, 2025 | Multiple improper neutralization of special elements used in an OS Command vulnerabilities [CWE-78] in FortiSandbox befo... |
| CVE-2024-52961 | HIGH | 8.8 | 0.5% | Mar 11, 2025 | An improper neutralization of special elements used in an OS Command vulnerability [CWE-78] vulnerability in Fortinet Fo... |
| CVE-2024-52960 | HIGH | 8.8 | 0.3% | Mar 11, 2025 | A client-side enforcement of server-side security vulnerability [CWE-602] in Fortinet FortiSandbox version 5.0.0, 4.4.0 ... |
| CVE-2024-51322 | MEDIUM | 5.4 | 0.3% | Mar 11, 2025 | Cross Site Scripting vulnerability in Zucchetti Ad Hoc Infinity 2.4 allows an authenticated attacker to achieve Remote C... |
| CVE-2024-51321 | HIGH | 7.6 | 0.3% | Mar 11, 2025 | In Zucchetti Ad Hoc Infinity 2.4, an improper check on the m_cURL parameter allows an attacker to redirect the victim to... |
| CVE-2024-51320 | MEDIUM | 5.4 | 0.3% | Mar 11, 2025 | Cross Site Scripting vulnerability in Zucchetti Ad Hoc Infinity 2.4 allows an authenticated attacker to achieve Remote C... |
| CVE-2024-51319 | HIGH | 7.3 | 0.4% | Mar 11, 2025 | A local file include vulnerability in the /servlet/Report of Zucchetti Ad Hoc Infinity 2.4 allows an authenticated attac... |
| CVE-2024-46663 | MEDIUM | 6.7 | 0.2% | Mar 11, 2025 | A stack-buffer overflow vulnerability [CWE-121] in Fortinet FortiMail CLI version 7.6.0 through 7.6.1 and before 7.4.3 a... |
| CVE-2024-45328 | HIGH | 7.8 | 0.1% | Mar 11, 2025 | An incorrect authorization vulnerability [CWE-863] in FortiSandbox 4.4.0 through 4.4.6 may allow a low priviledged admin... |
| CVE-2024-45324 | HIGH | 7.2 | 0.7% | Mar 11, 2025 | A use of externally-controlled format string vulnerability [CWE-134] in FortiOS version 7.4.0 through 7.4.4, version 7.2... |
| CVE-2024-33501 | MEDIUM | 6.7 | 0.2% | Mar 11, 2025 | Two improper neutralization of special elements used in an SQL Command ('SQL Injection') vulnerability [CWE-89] in Forti... |
| CVE-2024-32123 | MEDIUM | 6.7 | 0.5% | Mar 11, 2025 | Multiple improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiMan... |
| CVE-2024-54085 | CRITICAL | 9.8 | 61.2% | Mar 11, 2025 | AMI’s SPx contains a vulnerability in the BMC where an Attacker may bypass authentication remotely through the Redfish H... |
| CVE-2024-54084 | HIGH | 7 | 0.1% | Mar 11, 2025 | APTIOV contains a vulnerability in BIOS where an attacker may cause a Time-of-check Time-of-use (TOCTOU) Race Condition ... |
| CVE-2024-12546 | — | — | — | Mar 11, 2025 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2024-56336 | CRITICAL | 9.8 | 0.5% | Mar 11, 2025 | A vulnerability has been identified in SINAMICS S200 (All versions with serial number beginning with SZVS8, SZVS9, SZVS0... |
| CVE-2024-56182 | HIGH | 8.2 | 0.2% | Mar 11, 2025 | A vulnerability has been identified in SIMATIC Field PG M5 (All versions), SIMATIC Field PG M6 (All versions < V26.01.12... |
| CVE-2024-56181 | HIGH | 8.2 | 0.2% | Mar 11, 2025 | A vulnerability has been identified in SIMATIC Field PG M5 (All versions), SIMATIC IPC BX-21A (All versions < V31.01.07)... |
| CVE-2024-52285 | MEDIUM | 6.9 | 0.4% | Mar 11, 2025 | A vulnerability has been identified in SiPass integrated AC5102 (ACC-G2) (All versions < V6.4.8), SiPass integrated ACC-... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now