2024 CVE Vulnerabilities
39,218 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-40766 | CRITICAL | 9.8 | 15.7% | Aug 23, 2024 | An improper access control vulnerability has been identified in the SonicWall SonicOS management access, potentially lea... |
| CVE-2024-8089 | CRITICAL | 9.8 | 0.7% | Aug 23, 2024 | A vulnerability was found in SourceCodester E-Commerce System 1.0. It has been classified as critical. Affected is an un... |
| CVE-2024-8087 | CRITICAL | 9.8 | 0.6% | Aug 22, 2024 | A vulnerability was found in SourceCodester E-Commerce System 1.0 and classified as critical. This issue affects some un... |
| CVE-2024-8086 | CRITICAL | 9.8 | 0.7% | Aug 22, 2024 | A vulnerability has been found in SourceCodester E-Commerce System 1.0 and classified as critical. This vulnerability af... |
| CVE-2024-8081 | CRITICAL | 9.8 | 0.6% | Aug 22, 2024 | A vulnerability classified as critical was found in itsourcecode Payroll Management System 1.0. Affected by this vulnera... |
| CVE-2024-8080 | CRITICAL | 9.8 | 0.6% | Aug 22, 2024 | A vulnerability classified as critical has been found in SourceCodester Online Health Care System 1.0. Affected is an un... |
| CVE-2024-8079 | CRITICAL | 9.8 | 1.1% | Aug 22, 2024 | A vulnerability was found in TOTOLINK AC1200 T8 4.1.5cu.862_B20230228. It has been rated as critical. This issue affects... |
| CVE-2024-8078 | CRITICAL | 9.8 | 1.0% | Aug 22, 2024 | A vulnerability was found in TOTOLINK AC1200 T8 4.1.5cu.862_B20230228. It has been declared as critical. This vulnerabil... |
| CVE-2024-8077 | CRITICAL | 9.8 | 2.9% | Aug 22, 2024 | A vulnerability was found in TOTOLINK AC1200 T8 4.1.5cu.862_B20230228. It has been classified as critical. This affects ... |
| CVE-2024-8076 | CRITICAL | 9.8 | 0.8% | Aug 22, 2024 | A vulnerability was found in TOTOLINK AC1200 T8 4.1.5cu.862_B20230228 and classified as critical. Affected by this issue... |
| CVE-2024-8075 | CRITICAL | 9.8 | 1.9% | Aug 22, 2024 | A vulnerability has been found in TOTOLINK AC1200 T8 4.1.5cu.862_B20230228 and classified as critical. Affected by this ... |
| CVE-2024-42773 | CRITICAL | 9.1 | 0.5% | Aug 22, 2024 | An Incorrect Access Control vulnerability was found in /admin/edit_room_controller.php in Kashipara Hotel Management Sys... |
| CVE-2024-42775 | CRITICAL | 9.1 | 0.5% | Aug 22, 2024 | An Incorrect Access Control vulnerability was found in /admin/add_room_controller.php in Kashipara Hotel Management Syst... |
| CVE-2024-36445 | CRITICAL | 9.8 | 1.0% | Aug 22, 2024 | Swissphone DiCal-RED 4009 devices allow a remote attacker to gain a root shell via TELNET without authentication. |
| CVE-2024-36439 | CRITICAL | 9.4 | 0.9% | Aug 22, 2024 | Swissphone DiCal-RED 4009 devices allow a remote attacker to gain access to the administrative web interface via the dev... |
| CVE-2024-43331 | CRITICAL | 9.8 | 0.4% | Aug 22, 2024 | Missing Authorization vulnerability in VeronaLabs WP SMS.This issue affects WP SMS: from n/a through 6.9.3. |
| CVE-2024-45169 | CRITICAL | 9.8 | 1.4% | Aug 22, 2024 | An issue was discovered in UCI IDOL 2 (aka uciIDOL or IDOL2) through 2.12. Due to improper input validation, improper de... |
| CVE-2024-45168 | CRITICAL | 9.1 | 0.7% | Aug 22, 2024 | An issue was discovered in UCI IDOL 2 (aka uciIDOL or IDOL2) through 2.12. Data is transferred over a raw socket without... |
| CVE-2024-45167 | CRITICAL | 9.8 | 1.2% | Aug 22, 2024 | An issue was discovered in UCI IDOL 2 (aka uciIDOL or IDOL2) through 2.12. Due to improper input validation, improper de... |
| CVE-2024-45166 | CRITICAL | 9.8 | 1.0% | Aug 22, 2024 | An issue was discovered in UCI IDOL 2 (aka uciIDOL or IDOL2) through 2.12. Due to improper input validation, improper de... |
| CVE-2024-45163 | CRITICAL | 9.1 | 0.8% | Aug 22, 2024 | The Mirai botnet through 2024-08-19 mishandles simultaneous TCP connections to the CNC (command and control) server. Una... |
| CVE-2024-28987 | CRITICAL | 9.1 | 93.2% | Aug 21, 2024 | The SolarWinds Web Help Desk (WHD) software is affected by a hardcoded credential vulnerability, allowing remote unauthe... |
| CVE-2024-7971 | CRITICAL | 9.6 | 19.3% | Aug 21, 2024 | Type confusion in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to exploit heap corruption via a ... |
| CVE-2024-42784 | CRITICAL | 9.8 | 0.6% | Aug 21, 2024 | A SQL injection vulnerability in "/music/controller.php?page=view_music" in Kashipara Music Management System v1.0 allow... |
| CVE-2024-42783 | CRITICAL | 9.8 | 0.4% | Aug 21, 2024 | Kashipara Music Management System v1.0 is vulnerable to SQL Injection via /music/manage_playlist_items.php. An attacker ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now