CVE-2024-12511
CVSS 3.1 Score 7.6 of 10 (high)
Details
Published Feb 3, 2025
CWE ID 269
Summary
CVE-2024-12511 is a newly disclosed vulnerability that allows attackers to manipulate SMB/FTP settings with access to an organization's address book. By making these modifications, scans can be redirected, potentially enabling the capture of sensitive credentials. This threat only materializes when an organization's scan functions and printer access are enabled.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share