CVE-2024-12989

CVSS 2.0 Score 5 of 10 (medium)

Details

Published Dec 27, 2024
CWE ID 918

Summary

CVE-2024-12989 is a newly identified vulnerability affecting the HTTP Request Handler component in WISI Tangram GT31 versions up to 20241214. This issue poses a significant risk as it allows for server-side request forgery, enabling attackers to manipulate server requests remotely. The specific functionality that is vulnerable has yet to be determined. Despite early disclosure, the vendor has not responded to reports about this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share