CVE-2024-10944

CVSS 3.1 Score 8.4 of 10 (high)

Details

Published Nov 12, 2024
Updated: Nov 13, 2024
CWE ID 20

Summary

CVE-2024-10944 is a newly discovered vulnerability that allows an attacker to execute remote code on affected systems. This issue arises due to insufficient input validation in the product, enabling a malicious Updated Agent to be deployed. Successful exploitation requires a high level of permissions, making this a significant risk for organizations that use the affected product. The potential consequences of this vulnerability include unauthorized system access, data theft, and the deployment of malware. It is essential to apply patches and implement security best practices to mitigate the risk of exploitation.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share