CVE-2024-12902
CVSS 3.1 Score 8.4 of 10 (high)
Details
Published Dec 23, 2024
CWE ID 1392
Summary
CVE-2024-12902 is a vulnerability affecting ANCHOR from Global Wisdom Software. The product runs on a Windows virtual machine, and the underlying OS houses high-privilege service accounts. If these accounts retain their default passwords, attackers can gain remote access to the virtual machine, exploiting the weakness. This issue underscores the importance of securing administrative credentials to protect against unauthorized access.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.