CVE-2024-48033

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Oct 11, 2024
Updated: Oct 15, 2024
CWE ID 502

Summary

CVE-2024-48033 is a Deserialization of Untrusted Data vulnerability affecting the Elie Burstein and Baptiste Gourdin Talkback software. This issue grants attackers the ability to inject objects, exploiting the deserialization process with untrusted data. The vulnerability can be found in Talkback versions from n/a through 1.0, placing affected users at risk. Successful exploitation may result in arbitrary code execution or denial of service, posing a significant threat to targeted systems. Users are advised to update their Talkback software to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share