CVE-2024-45251
CVSS 3.1 Score 9.8 of 10 (high)
Details
Summary
CVE-2024-45251 is a newly disclosed cybersecurity vulnerability classified as an OS Command Injection. According to the Common Vulnerabilities and Exposures (CVE) database, this issue affects Elsight's products and could allow an attacker to inject malicious OS commands. By exploiting this vulnerability (CWE-78), an adversary could potentially gain unauthorized access to systems or execute arbitrary code. This poses a significant risk, as the attacker can bypass security controls and potentially steal sensitive information or cause damage to the affected system. Organizations utilizing Elsight's products should apply the available patches or updates as soon as possible to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Halo
Affected Vendors
- Halo