CVE-2024-50715

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Dec 27, 2024
Updated: Dec 28, 2024
CWE ID 94

Summary

CVE-2024-50715 is a vulnerability affecting the Smart Agent v.1.1.0 of smarts-srl.com. This issue permits a remote attacker to execute command injection attacks, exploiting an unsanitized parameter found in the /youtubeInfo.php component. Successful exploitation of this vulnerability allows the attacker to obtain sensitive information from the system. This issue poses a significant risk to security and should be addressed promptly by applying the necessary patches or updates. Users are strongly advised to secure their systems by mitigating this vulnerability as soon as possible.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share