CVE-2024-38392
CVSS 3.1 Score 9.1 of 10 (high)
Details
Summary
CVE-2024-38392 is a newly disclosed vulnerability affecting Pexip Infinity Connect versions prior to 1.13.0. The issue lies in insufficient authenticity checks during the loading of resources, making it possible for remote attackers to execute untrusted code. This vulnerability poses a significant risk, as successful exploitation could result in serious security implications for affected organizations. It is strongly recommended that users upgrade to the latest version of Pexip Infinity Connect to mitigate this risk. Failure to do so may leave systems vulnerable to remote code execution attacks.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- Pexip