CVE-2024-38292
CVSS 3.1 Score 9.8 of 10 (high)
Details
Published Feb 27, 2025
Updated: Mar 14, 2025
CWE ID 22
Summary
CVE-2024-38292 is a vulnerability affecting Extreme Networks XIQ-SE versions prior to 24.2.11. This issue involves a missing access control check, allowing an attacker to conduct a path traversal attack. Successful exploitation of this vulnerability could result in privilege escalation, granting the attacker elevated access to the affected system. Organizations using impacted versions of Extreme Networks XIQ-SE are advised to apply the available patch to mitigate this cybersecurity risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.