2024 Advisories Archive

Severity Date Published Date Updated Check Point Reference Source Industry Reference Description
High 1 Aug 2024 1 Aug 2024 CPAI-2023-1854 CVE-2023-4827
WordPress File Manager Pro Plugin Remote Code Execution (CVE-2023-4827)
Critical 4 Jul 2024 1 Aug 2024 CPAI-2023-1811 CVE-2023-27394
CVE-2023-28712
Osprey Pump Controller Command Injection (CVE-2023-27394; CVE-2023-28712)
High 31 Jul 2024 31 Jul 2024 CPAI-2024-0624 CVE-2024-7171
CVE-2024-7174
CVE-2024-7175
CVE-2024-7177
CVE-2024-7181
CVE-2024-7182
CVE-2024-7183
CVE-2024-7185
TOTOLINK A3600R Command Injection (CVE-2024-7171; CVE-2024-7174; CVE-2024-7175; CVE-2024-7177; CVE-2024-7181; CVE-2024-7182; CVE-2024-7183; CVE-2024-7185)
High 31 Jul 2024 31 Jul 2024 CPAI-2024-0590 CVE-2024-39149
NETGEAR X6 R8000 Command Injection (CVE-2024-39149)
High 16 Jul 2024 31 Jul 2024 CPAI-2023-1839 CVE-2023-3545
CVE-2023-4220
CVE-2023-4223
CVE-2023-4224
CVE-2023-4225
CVE-2023-4226
Chamilo Arbitrary File Upload (CVE-2023-3545; CVE-2023-4220; CVE-2023-4223; CVE-2023-4224; CVE-2023-4225; CVE-2023-4226)
Critical 31 Jul 2024 31 Jul 2024 CPAI-2023-1832 CVE-2023-43795
Osgeo GeoServer Server Side Request Forgery (CVE-2023-43795)
Medium 16 Jun 2024 31 Jul 2024 CPAI-2018-2743 CVE-2018-14392
MyBB New Threads Cross-Site Scripting (CVE-2018-14392)
Critical 30 Jul 2024 30 Jul 2024 CPAI-2023-1850 CVE-2023-27076
Tenda G103 Command Injection (CVE-2023-27076)
Critical 21 Jul 2024 30 Jul 2024 CPAI-2024-0589 CVE-2024-4879
CVE-2024-5178
CVE-2024-5217
ServiceNow Server-Side Template Injection (CVE-2024-4879; CVE-2024-5178; CVE-2024-5217)
High 24 Jun 2024 30 Jul 2024 CPAI-2022-2085 CVE-2022-2463
Rockwell Automation ISaGRAF Workbench Directory Traversal (CVE-2022-2463)
Medium 29 Jul 2024 29 Jul 2024 CPAI-2024-0610 CVE-2024-38030
Microsoft Windows Spoofing (CVE-2024-38030)
Medium 29 Jul 2024 29 Jul 2024 CPAI-2024-0609 CVE-2024-31444
Cacti Group Cacti Stored Cross-Site Scripting (CVE-2024-31444)
Critical 29 Jul 2024 29 Jul 2024 CPAI-2018-2779 CVE-2018-1000517
BusyBox Buffer Overflow (CVE-2018-1000517)
Medium 29 Jul 2024 29 Jul 2024 CPAI-2020-4190 CVE-2020-1464
Microsoft Windows File Signature Spoofing (CVE-2020-1464)
Medium 29 Jul 2024 29 Jul 2024 CPAI-2024-0588 CVE-2024-31458
Cacti Group Cacti SQL Injection (CVE-2024-31458)
Critical 29 Jul 2024 29 Jul 2024 CPAI-2024-0578 CVE-2024-27144
CVE-2024-27145
CVE-2024-27146
CVE-2024-27147
CVE-2024-27148
CVE-2024-27149
CVE-2024-27150
CVE-2024-27151
CVE-2024-27171
Toshiba Multi-Function Printers Unrestricted File Upload (CVE-2024-27144; CVE-2024-27145; CVE-2024-27146; CVE-2024-27147; CVE-2024-27148; CVE-2024-27149; CVE-2024-27150; CVE-2024-27151; CVE-2024-27171)
Critical 28 Jul 2024 28 Jul 2024 CPAI-2023-1852 CVE-2023-34600
Adiscon LogAnalyzer SQL Injection (CVE-2023-34600)
Critical 28 Jul 2024 28 Jul 2024 CPAI-2023-1851 CVE-2023-1698
WAGO Command Injection (CVE-2023-1698)
High 28 Jul 2024 28 Jul 2024 CPAI-2023-1849 CVE-2023-36212
Total CMS Arbitrary File Upload (CVE-2023-36212)
Critical 28 Jul 2024 28 Jul 2024 CPAI-2024-0606 CVE-2024-1651
Torrentpier Insecure Deserialization (CVE-2024-1651)
Critical 28 Jul 2024 28 Jul 2024 CPAI-2023-1848 CVE-2023-37145
CVE-2023-37148
TOTOLINK LR350 Command Injection (CVE-2023-37145; CVE-2023-37148)
High 28 Jul 2024 28 Jul 2024 CPAI-2024-0595 CVE-2024-39943
Rejetto HTTP File Server Remote Code Execution (CVE-2024-39943)
High 28 Jul 2024 28 Jul 2024 CPAI-2007-0657 CVE-2007-6506
HP Software Update Arbitrary File Overwrite (CVE-2007-6506)
Critical 2 Apr 2024 28 Jul 2024 CPAI-2023-1623 CVE-2022-32039
CVE-2022-32040
CVE-2022-32043
CVE-2023-37710
CVE-2023-37714
CVE-2023-37715
CVE-2023-37716
CVE-2023-37717
CVE-2023-37718
CVE-2023-37719
CVE-2023-37721
CVE-2023-37722
CVE-2023-37723
CVE-2023-51093
Tenda Multiple Products Stack Overflow (CVE-2022-32039; CVE-2022-32040; CVE-2022-32043; CVE-2023-37710; CVE-2023-37714; CVE-2023-37715; CVE-2023-37716; CVE-2023-37717; CVE-2023-37718; CVE-2023-37719; CVE-2023-37721; CVE-2023-37722; CVE-2023-37723; CVE-2023-51093)
Critical 3 Mar 2024 25 Jul 2024 CPAI-2024-0034 CVE-2020-9437
Client-Side Template Injection (CVE-2020-9437)
Critical 24 Jul 2024 24 Jul 2024 CPAI-2024-0587 CVE-2024-27172
Toshiba Multi-Function Printers Command Injection (CVE-2024-27172)
High 10 Jul 2024 24 Jul 2024 CPAI-2024-0560 CVE-2024-36991
Splunk Enterprise Path Traversal (CVE-2024-36991)
Medium 24 Jul 2024 24 Jul 2024 CPAI-2016-1333 CVE-2016-0489
Oracle Application Testing Suite Directory Traversal (CVE-2016-0489)
Critical 20 Jun 2024 24 Jul 2024 CPAI-2024-0416 CVE-2024-23692
Rejetto HTTP File Server Server-Side Template Injection (CVE-2024-23692)
High 28 Feb 2024 24 Jul 2024 CPAI-2023-1545 CVE-2023-52251
Provectus ui Remote Code Execution (CVE-2023-52251)
Critical 23 Jul 2024 23 Jul 2024 CPAI-2024-0602 CVE-2024-0986
Issabel PBX Command Injection (CVE-2024-0986)
High 23 Jul 2024 23 Jul 2024 CPAI-2023-1843 CVE-2023-0234
WordPress SiteGround Security Plugin SQL Injection (CVE-2023-0234)
High 23 Jul 2024 23 Jul 2024 CPAI-2023-1841 CVE-2023-45363
MediaWiki Denial Of Service (CVE-2023-45363)
Critical 24 Jun 2024 23 Jul 2024 CPAI-2022-2084 CVE-2022-29805
Fishbowl Insecure Deserialization (CVE-2022-29805)
High 22 Jul 2024 22 Jul 2024 CPAI-2024-0597 CVE-2024-4884
Progress Software WhatsUp Gold Unrestricted File Upload (CVE-2024-4884)
High 22 Jul 2024 22 Jul 2024 CPAI-2024-0586 CVE-2024-38023
CVE-2024-38024
CVE-2024-38094
Microsoft SharePoint Server Remote Code Execution (CVE-2024-38023; CVE-2024-38024; CVE-2024-38094)
High 21 Jul 2024 21 Jul 2024 CPAI-2024-0599 CVE-2024-38457
XenForo Cross-Site Request Forgery (CVE-2024-38457)
Medium 21 Jul 2024 21 Jul 2024 CPAI-2024-0592 CVE-2024-37389
Apache NiFi Cross-Site Scripting (CVE-2024-37389)
Critical 21 Jul 2024 21 Jul 2024 CPAI-2023-1845 CVE-2023-1715
CVE-2023-1716
CVE-2023-1717
Bitrix24 Cross-Site Scripting (CVE-2023-1715; CVE-2023-1716; CVE-2023-1717)
High 21 Jul 2024 21 Jul 2024 CPAI-2023-1844 CVE-2023-0259
CVE-2023-0260
CVE-2023-0261
CVE-2023-0262
CVE-2023-0263
WordPress Review Slider Plugins SQL Injection (CVE-2023-0259; CVE-2023-0260; CVE-2023-0261; CVE-2023-0262; CVE-2023-0263)
Medium 21 Jul 2024 21 Jul 2024 CPAI-2024-0583 CVE-2024-29510
Artifex Ghostscript Memory Corruption (CVE-2024-29510)
High 21 Jul 2024 21 Jul 2024 CPAI-2024-0561 CVE-2024-38526
JavaScript Supply Chain Attack (CVE-2024-38526)
Critical 21 Jul 2024 21 Jul 2024 CPAI-2024-0411 CVE-2024-29855
Veeam Recovery Orchestrator Authentication Bypass (CVE-2024-29855)
High 18 Jul 2024 18 Jul 2024 CPAI-2023-1842 CVE-2023-1713
CVE-2023-1714
Bitrix24 Remote Code Execution (CVE-2023-1713; CVE-2023-1714)
High 18 Jul 2024 18 Jul 2024 CPAI-2024-0580 CVE-2024-39309
Parse Server SQL Injection (CVE-2024-39309)
High 18 Jul 2024 18 Jul 2024 CPAI-2024-0579 CVE-2024-32030
Provectus UI for Apache Kafka Insecure Deserialization (CVE-2024-32030)
Critical 18 Jul 2024 18 Jul 2024 CPAI-2023-1829 CVE-2023-51011
CVE-2023-51012
CVE-2023-51013
CVE-2023-51014
CVE-2023-51015
CVE-2023-51017
CVE-2023-51018
CVE-2023-51019
CVE-2023-51020
CVE-2023-51021
CVE-2023-51022
TOTOLINK EX1800T Command Injection (CVE-2023-51011; CVE-2023-51012; CVE-2023-51013; CVE-2023-51014; CVE-2023-51015; CVE-2023-51017; CVE-2023-51018; CVE-2023-51019; CVE-2023-51020; CVE-2023-51021; CVE-2023-51022)
Critical 18 Jul 2024 18 Jul 2024 CPAI-2023-1827 CVE-2023-3306
Ruijie RG-EW1200G Command Injection (CVE-2023-3306)
High 23 Jun 2024 18 Jul 2024 CPAI-2024-0408 CVE-2024-28995
SolarWinds Serv-U Directory Traversal (CVE-2024-28995)
High 18 Jul 2024 18 Jul 2024 CPAI-2023-1528 CVE-2023-49285
Squid Denial of Service (CVE-2023-49285)
×
  Feedback
This website uses cookies for its functionality and for analytics and marketing purposes. By continuing to use this website, you agree to the use of cookies. For more information, please read our Cookies Notice.
OK