2024 CVE Vulnerabilities
39,240 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-20900 | LOW | 3.3 | 0.1% | Jul 2, 2024 | Improper authentication in MTP application prior to SMR Jul-2024 Release 1 allows local attackers to enter MTP mode with... |
| CVE-2024-20899 | MEDIUM | 5.5 | 0.1% | Jul 2, 2024 | Use of implicit intent for sensitive communication in RCS function in IMS service prior to SMR Jul-2024 Release 1 allows... |
| CVE-2024-20898 | MEDIUM | 5.5 | 0.1% | Jul 2, 2024 | Use of implicit intent for sensitive communication in SoftphoneClient in IMS service prior to SMR Jul-2024 Release 1 all... |
| CVE-2024-20897 | MEDIUM | 5.5 | 0.1% | Jul 2, 2024 | Use of implicit intent for sensitive communication in FCM function in IMS service prior to SMR Jul-2024 Release 1 allows... |
| CVE-2024-20896 | MEDIUM | 5.5 | 0.1% | Jul 2, 2024 | Use of implicit intent for sensitive communication in Configuration message prior to SMR Jul-2024 Release 1 allows local... |
| CVE-2024-20895 | MEDIUM | 5.5 | 0.1% | Jul 2, 2024 | Improper access control in Dar service prior to SMR Jul-2024 Release 1 allows local attackers to bypass restriction for ... |
| CVE-2024-20894 | MEDIUM | 4.3 | 0.2% | Jul 2, 2024 | Improper handling of exceptional conditions in Secure Folder prior to SMR Jul-2024 Release 1 allows physical attackers t... |
| CVE-2024-20893 | HIGH | 7.8 | 0.2% | Jul 2, 2024 | Improper input validation in libmediaextractorservice.so prior to SMR Jul-2024 Release 1 allows local attackers to trigg... |
| CVE-2024-20892 | HIGH | 7.8 | 0.1% | Jul 2, 2024 | Improper verification of signature in FilterProvider prior to SMR Jul-2024 Release 1 allows local attackers to execute p... |
| CVE-2024-20891 | HIGH | 7.8 | 0.1% | Jul 2, 2024 | Improper access control in launchFullscreenIntent of SystemUI prior to SMR Jul-2024 Release 1 allows local attackers to ... |
| CVE-2024-20890 | HIGH | 8.8 | 0.2% | Jul 2, 2024 | Improper input validation in BLE prior to SMR Jul-2024 Release 1 allows adjacent attackers to trigger abnormal behavior. |
| CVE-2024-20889 | MEDIUM | 4.3 | 0.2% | Jul 2, 2024 | Improper authentication in BLE prior to SMR Jul-2024 Release 1 allows adjacent attackers to pair with devices. |
| CVE-2024-20888 | HIGH | 7.8 | 0.2% | Jul 2, 2024 | Improper access control in OneUIHome prior to SMR Jul-2024 Release 1 allows local attackers to launch privileged activit... |
| CVE-2024-5260 | MEDIUM | 5.4 | 0.4% | Jul 2, 2024 | The Sina Extension for Elementor (Slider, Gallery, Form, Modal, Data Table, Tab, Particle, Free Elementor Widgets & Elem... |
| CVE-2024-4836 | HIGH | 7.5 | 2.6% | Jul 2, 2024 | Web services managed by Edito CMS (Content Management System) in versions from 3.5 through 3.25 leak sensitive data as t... |
| CVE-2024-37185 | CRITICAL | 9.8 | 0.6% | Jul 2, 2024 | in OpenHarmony v4.0.0 and prior versions allow a remote attacker arbitrary code execution in pre-installed apps through ... |
| CVE-2024-37077 | CRITICAL | 9.8 | 0.6% | Jul 2, 2024 | in OpenHarmony v4.0.0 and prior versions allow a remote attacker arbitrary code execution in pre-installed apps through ... |
| CVE-2024-37030 | CRITICAL | 9.8 | 0.6% | Jul 2, 2024 | in OpenHarmony v4.0.0 and prior versions allow a remote attacker arbitrary code execution in pre-installed apps through ... |
| CVE-2024-36278 | LOW | 3.3 | 0.1% | Jul 2, 2024 | in OpenHarmony v4.0.0 and prior versions allow a local attacker cause apps crash through type confusion. |
| CVE-2024-36260 | CRITICAL | 9.8 | 0.6% | Jul 2, 2024 | in OpenHarmony v4.0.0 and prior versions allow a remote attacker arbitrary code execution in pre-installed apps through ... |
| CVE-2024-36243 | CRITICAL | 9.8 | 0.6% | Jul 2, 2024 | in OpenHarmony v4.0.0 and prior versions allow a remote attacker arbitrary code execution in pre-installed apps through ... |
| CVE-2024-31071 | LOW | 3.3 | 0.1% | Jul 2, 2024 | in OpenHarmony v4.0.0 and prior versions allow a local attacker cause apps crash through type confusion. |
| CVE-2024-5545 | MEDIUM | 5.3 | 0.3% | Jul 2, 2024 | The Motors – Car Dealer, Classifieds & Listing plugin for WordPress is vulnerable to unauthorized modification of data d... |
| CVE-2024-5544 | MEDIUM | 6.1 | 0.4% | Jul 2, 2024 | The Media Library Assistant plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the order parameter... |
| CVE-2024-5504 | MEDIUM | 5.4 | 0.3% | Jul 2, 2024 | The Rife Elementor Extensions & Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'tag... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now