CVE-2024-48125
CVSS 3.1 Score 7.5 of 10 (high)
Details
Published Jan 15, 2025
Updated: Jan 17, 2025
CWE ID 798
Summary
CVE-2024-48125 is a newly disclosed vulnerability affecting the AsDB service in HI-SCAN 6040i Hitrax HX-03-19-I X-ray systems. This issue permits attackers to enumerate user credentials by sending specially crafted GIOP (General Inter-ORB Protocol) requests. Successful exploitation of this vulnerability could lead to unauthorized access to the affected system, potentially resulting in data breaches or system compromise. Organizations utilizing these X-ray systems are advised to apply the necessary patches as soon as possible to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.