CVE-2024-45272
CVSS 3.1 Score 7.5 of 10 (high)
Details
Published Oct 15, 2024
Updated: Nov 21, 2024
CWE ID 1391
Summary
CVE-2024-45272 is a newly disclosed vulnerability affecting a remote service portal. An attacker, without the need for authentication, can engage in a brute-force attack on the portal's credentials. The success rate of this attack is significant, posing a high risk. If an attacker is successful, the connection to the portal will be lost, potentially disrupting services. The vulnerability underscores the importance of implementing strong access control measures and regularly updating software to mitigate such threats.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Mbconnectline Mbconnect24
- Mbconnectline Mymbconnect24
Affected Vendors
- MB Connect Line