CVE-2024-11625

CVSS 3.1 Score 7.7 of 10 (high)

Details

Published Jan 7, 2025
CWE ID 209

Summary

CVE-2024-11625 is an Information Exposure vulnerability affecting various versions of Progress Software Corporation's Sitefinity. Versions from 4.0 to 14.4.8142, 15.0.8200 to 15.0.8229, 15.1.8300 to 15.1.8327, and 15.2.8400 to 15.2.8421 are vulnerable. An error message in Sitefinity discloses sensitive information, posing a potential security risk. Users of these affected versions are advised to update their systems to mitigate this issue.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share