CVE-2024-48125

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Jan 15, 2025
Updated: Jan 17, 2025
CWE ID 798

Summary

CVE-2024-48125 is a newly disclosed vulnerability affecting the AsDB service in HI-SCAN 6040i Hitrax HX-03-19-I X-ray systems. This issue permits attackers to enumerate user credentials by sending specially crafted GIOP (General Inter-ORB Protocol) requests. Successful exploitation of this vulnerability could lead to unauthorized access to the affected system, potentially resulting in data breaches or system compromise. Organizations utilizing these X-ray systems are advised to apply the necessary patches as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share