CVE-2024-12902

CVSS 3.1 Score 8.4 of 10 (high)

Details

Published Dec 23, 2024
CWE ID 1392

Summary

CVE-2024-12902 is a vulnerability affecting ANCHOR from Global Wisdom Software. The product runs on a Windows virtual machine, and the underlying OS houses high-privilege service accounts. If these accounts retain their default passwords, attackers can gain remote access to the virtual machine, exploiting the weakness. This issue underscores the importance of securing administrative credentials to protect against unauthorized access.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share