CVE-2024-45979
CVSS 3.1 Score 8.8 of 10 (high)
Details
Summary
CVE-2024-45979 is a newly discovered vulnerability in Lines Police CAD 1.0. This issue involves a host header injection flaw that enables attackers to craft malicious password reset links. By manipulating these links, cybercriminals can obtain password reset tokens through user interaction, ultimately allowing them to arbitrarily reset other users' passwords and compromise their accounts. This security weakness poses a significant risk, as it can lead to unauthorized access to sensitive data or systems. It is recommended that users update their software to the latest version to mitigate this threat.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.