CVE-2024-46511

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Sep 30, 2024
Updated: Oct 4, 2024
CWE ID 266

Summary

CVE-2024-46511 is a newly disclosed vulnerability affecting LoadLogic v1.4.3 by LoadZilla LLC. This issue involves insecure permissions, enabling a remote attacker to execute arbitrary code through the LogicLoadEc2DeployLambda and CredsGenFunction functions. By exploiting this vulnerability, an attacker can gain unauthorized access and potentially install malicious code, compromising the security of affected systems. This vulnerability underscores the importance of implementing proper access control mechanisms to prevent unauthorized access and protect sensitive data.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share