CVE-2024-45870

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Oct 3, 2024
Updated: Oct 4, 2024
CWE ID 284

Summary

CVE-2024-45870 is a newly identified vulnerability affecting Bandisoft BandiView 7.05. This issue involves incorrect access control in the sub_0x3d80fc function, which can be exploited through a specially crafted POC (proof of concept) file. Successful exploitation could result in unauthorized access or modification of data within the application. Users of BandiView 7.05 are advised to apply patches or updates as soon as they become available to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share