CVE-2024-51321
CVSS 3.1 Score 7.6 of 10 (high)
Details
Published Mar 11, 2025
Updated: Mar 21, 2025
CWE ID 601
Summary
CVE-2024-51321 is a newly disclosed vulnerability affecting Zucchetti Ad Hoc Infinity 2.4. This issue involves an improper check on the m_cURL parameter which can be exploited by attackers to redirect users to malicious websites following a successful authentication. This vulnerability poses a significant risk as users may unknowingly divulge sensitive information or download malware when visiting the attacker's site. It is strongly recommended that users upgrade to the latest version of Zucchetti Ad Hoc Infinity as soon as possible to mitigate this threat.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.