CVSS 3.1 Score 10.0 of 10 (high)


Published Feb 21, 2024


CVE-2024-27215 is a critical vulnerability that affects ConnectWise ScreenConnect before version 23.9.8. This vulnerability allows an attacker to bypass authentication through an alternate path or channel, potentially gaining unauthorized access to the system. The exploitability score is 3.9 out of 10, indicating a moderate level of difficulty for an attacker to exploit this vulnerability. The base severity is classified as critical, with a base score of 10.0, signifying the potential danger it poses to organizations. The impact includes high integrity and confidentiality impacts, with a CVSS vector string of "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H." It is important for organizations using ConnectWise ScreenConnect to update to version 23.9.8 or higher in order to remediate this vulnerability and mitigate the associated risks.

Explore Beyond the CVE Basics with Recorded Future's Vulnerability Intelligence

Note: This is just a basic overview providing quick insights into CVE-2024-27215 information. Gain full access to comprehensive CVE data, risk scores, prioritization, and mitigation data through Recorded Future's Vulnerability Intelligence:
  • Prioritize with Risk-Based Scoring
  • Explore the Extensive Vulnerability Database
  • Receive Early Alerts on Emerging CVEs
  • Focus on Critical Exploitable Vulnerabilities
  • Streamline Remediation with Integration Options