CVE-2024-47977

CVSS 3.1 Score 7.1 of 10 (high)

Details

Published Dec 10, 2024
Updated: Dec 16, 2024
CWE ID 89

Summary

CVE-2024-47977 is a newly disclosed vulnerability affecting Dell Avamar version 19.x. This issue involves an SQL Injection vulnerability, where an attacker can improperly neutralize special elements in SQL commands. A low-privileged attacker with remote access can potentially exploit this vulnerability, granting them command execution capabilities. This puts sensitive data at risk, emphasizing the need for immediate patching to mitigate this threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share