2024 Advisories Archive

Severity Date Published Date Updated Check Point Reference Source Industry Reference Description
High 23 Sep 2024 23 Sep 2024 CPAI-2024-0826 CVE-2024-8504
VICIdial Command Injection (CVE-2024-8504)
Medium 23 Sep 2024 23 Sep 2024 CPAI-2022-2129 CVE-2022-26263
Yonyou U8 Cross-Site Scripting (CVE-2022-26263)
Medium 23 Sep 2024 23 Sep 2024 CPAI-2023-1535 CVE-2023-50218
Inductive Automation Ignition Insecure Deserialization (CVE-2023-50218)
High 22 Sep 2024 22 Sep 2024 CPAI-2024-0840 CVE-2024-6893
Journyx XML External Entity Injection (CVE-2024-6893)
Critical 22 Sep 2024 22 Sep 2024 CPAI-2024-0824 CVE-2024-27954
WordPress Automatic Arbitrary File Download (CVE-2024-27954)
Critical 22 Sep 2024 22 Sep 2024 CPAI-2024-0816 CVE-2024-44466
Comfast CF-XR11 Command Injection (CVE-2024-44466)
High 22 Sep 2024 22 Sep 2024 CPAI-2024-0808 CVE-2024-1884
PaperCut NG/MF Server-Side Request Forgery (CVE-2024-1884)
High 10 Sep 2024 22 Sep 2024 CPAI-2024-0793 Adobe APSB24-71 CVE-2024-41874
Adobe ColdFusion Deserialization of Untrusted Data (APSB24-71: CVE-2024-41874)
Critical 19 Sep 2024 19 Sep 2024 CPAI-2024-0828 CVE-2024-7954
SPIP Remote Code Execution (CVE-2024-7954)
Critical 2 Jun 2024 19 Sep 2024 CPAI-2022-1601 CVE-2022-38142
Delta InfraSuite Device Master Insecure Deserialization (CVE-2022-38142)
Critical 18 Sep 2024 18 Sep 2024 CPAI-2021-2021 CVE-2021-38389
Advantech WebAccess Buffer Overflow (CVE-2021-38389)
Critical 17 Sep 2024 17 Sep 2024 CPAI-2023-1898 CVE-2023-51409
WordPress AI Engine Plugin Arbitrary File Upload (CVE-2023-51409)
Critical 17 Sep 2024 17 Sep 2024 CPAI-2023-1897 CVE-2023-3595
CVE-2023-3596
Rockwell Automation Multiple Products Remote Code Execution (CVE-2023-3595; CVE-2023-3596)
High 17 Sep 2024 17 Sep 2024 CPAI-2024-0805 CVE-2024-5505
Netgear ProSAFE NMS300 Directory Traversal (CVE-2024-5505)
Critical 16 Sep 2024 16 Sep 2024 CPAI-2024-0814 CVE-2024-8517
SPIP Remote Code Execution (CVE-2024-8517)
Medium 16 Sep 2024 16 Sep 2024 CPAI-2024-0811 CVE-2024-24494
Daily Habit Tracker Cross-Site Scripting (CVE-2024-24494)
High 16 Sep 2024 16 Sep 2024 CPAI-2024-0807 Tongda OA Directory Traversal
High 16 Sep 2024 16 Sep 2024 CPAI-2024-0801 CVE-2024-43425
Moodle Remote Code Execution (CVE-2024-43425)
High 16 Sep 2024 16 Sep 2024 CPAI-2024-0800 CVE-2024-35181
CVE-2024-35182
Meshery SQL Injection (CVE-2024-35181; CVE-2024-35182)
High 16 Sep 2024 16 Sep 2024 CPAI-2024-0785 Ruijie EWEB Command Injection
High 16 Sep 2024 16 Sep 2024 CPAI-2024-0781 CVE-2024-43044
Jenkins Arbitrary File Read (CVE-2024-43044)
Critical 16 Sep 2024 16 Sep 2024 CPAI-2024-0778 CVE-2024-38077
Microsoft Windows Server Remote Code Execution (CVE-2024-38077)
Critical 14 Mar 2024 16 Sep 2024 CPAI-2024-0032 CVE-2022-0944
CVE-2023-29827
Node.js Server-Side Template Injection (CVE-2022-0944; CVE-2023-29827)
Medium 16 Sep 2024 16 Sep 2024 CPAI-2022-1549 CVE-2022-37985
Microsoft Windows Information Disclosure (CVE-2022-37985)
Critical 15 Sep 2024 15 Sep 2024 CPAI-2024-0812 CVE-2024-28986
SolarWinds Web Help Desk Insecure Deserialization (CVE-2024-28986)
Medium 15 Sep 2024 15 Sep 2024 CPAI-2024-0804 CVE-2024-5723
Centreon Project Centreon Web SQL Injection (CVE-2024-5723)
Critical 15 Sep 2024 15 Sep 2024 CPAI-2023-1895 CVE-2023-51364
QNAP QTS Command Injection (CVE-2023-51364)
Critical 12 Sep 2024 12 Sep 2024 CPAI-2024-0794 CVE-2024-27747
Petrol Pump Management System Arbitrary File Upload (CVE-2024-27747)
Critical 12 Sep 2024 12 Sep 2024 CPAI-2024-0792 CVE-2024-27746
Petrol Pump Management System SQL Injection (CVE-2024-27746)
High 11 Sep 2024 12 Sep 2024 CPAI-2015-1670 CVE-2015-2387
Microsoft Windows Memory Corruption (CVE-2015-2387)
High 12 Sep 2024 12 Sep 2024 CPAI-2021-1773 CVE-2021-22797
Schneider Electric EcoStruxure Directory Traversal (CVE-2021-22797)
Critical 11 Sep 2024 11 Sep 2024 CPAI-2023-1892 CVE-2023-31475
Gl-Inet GL-S20 Buffer Overflow (CVE-2023-31475)
High 11 Sep 2024 11 Sep 2024 CPAI-2010-0813 CVE-2010-2551
Microsoft Windows Denial of Service (CVE-2010-2551)
High 11 Sep 2024 11 Sep 2024 CPAI-2023-1890 CVE-2023-33919
Siemens Multiple Products Command Injection (CVE-2023-33919)
Medium 11 Sep 2024 11 Sep 2024 CPAI-2024-0768 CVE-2024-4044
National Instruments FlexLogger Insecure Deserialization (CVE-2024-4044)
Critical 11 Sep 2024 11 Sep 2024 CPAI-2023-1873 CVE-2023-5222
Viessmann Vitogate 300 Hardcoded Credentials (CVE-2023-5222)
Critical 11 Sep 2024 11 Sep 2024 CPAI-2024-0702 CVE-2024-4883
WhatsUp Gold Directory Traversal (CVE-2024-4883)
Medium 7 Jul 2024 11 Sep 2024 CPAI-2019-3209 CVE-2019-14470
WordPress UserPro Plugin Cross-Site Scripting (CVE-2019-14470)
High 11 Sep 2024 11 Sep 2024 CPAI-2023-1146 CVE-2023-43622
Apache HTTP Server Remote Code Execution (CVE-2023-43622)
High 10 Sep 2024 10 Sep 2024 CPAI-2024-0790 Adobe APSB24-70 CVE-2024-41869
Adobe Acrobat and Reader Use After Free (APSB24-70: CVE-2024-41869)
High 10 Sep 2024 10 Sep 2024 CPAI-2024-0789 Adobe APSB24-70 CVE-2024-39420
Adobe Acrobat and Reader Time-of-check Time-of-use (APSB24-70: CVE-2024-39420)
High 10 Sep 2024 10 Sep 2024 CPAI-2024-0765 Microsoft CVE-2024-38244 CVE-2024-38244
Microsoft Kernel Streaming Service Driver Elevation of Privilege (CVE-2024-38244)
High 10 Sep 2024 10 Sep 2024 CPAI-2024-0762 Microsoft CVE-2024-38243 CVE-2024-38243
Microsoft Kernel Streaming Service Driver Elevation of Privilege (CVE-2024-38243)
High 10 Sep 2024 10 Sep 2024 CPAI-2024-0760 Microsoft CVE-2024-38237 CVE-2024-38237
Microsoft Kernel Streaming WOW Thunk Service Driver Elevation of Privilege (CVE-2024-38237)
High 10 Sep 2024 10 Sep 2024 CPAI-2024-0759 Microsoft CVE-2024-38241 CVE-2024-38241
Microsoft Kernel Streaming Service Driver Elevation of Privilege (CVE-2024-38241)
High 9 Sep 2024 9 Sep 2024 CPAI-2024-0788 CVE-2024-45195
Apache OFBiz Remote Code Execution (CVE-2024-45195)
High 9 Sep 2024 9 Sep 2024 CPAI-2024-0777 CVE-2024-7331
Totolink A3300R Buffer Overflow (CVE-2024-7331)
High 9 Sep 2024 9 Sep 2024 CPAI-2023-1889 CVE-2023-3450
Ruijie RG-BCR860 Command Injection (CVE-2023-3450)
High 9 Sep 2024 9 Sep 2024 CPAI-2024-0775 Dahua Smart Park Arbitrary File Upload
Medium 9 Sep 2024 9 Sep 2024 CPAI-2023-1884 CVE-2023-0084
WordPress Metform Elementor Plugin Cross-Site Scripting (CVE-2023-0084)
×
  Feedback
This website uses cookies for its functionality and for analytics and marketing purposes. By continuing to use this website, you agree to the use of cookies. For more information, please read our Cookies Notice.
OK