CVE-2024-45276

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Oct 15, 2024
Updated: Jan 24, 2025
CWE ID 306

Summary

CVE-2024-45276 is a newly disclosed vulnerability that grants unauthenticated attackers read access to files in the "/tmp" directory. This issue arises due to the lack of required authentication checks, allowing remote adversaries to access sensitive data without proper authorization. The impact of this vulnerability could lead to information disclosure and potential further exploitation. System administrators are strongly advised to apply relevant patches or configurations to mitigate this risk. Attackers can exploit this weakness through various means, including network connections or specially crafted requests, making it essential to prioritize remediation efforts.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share