CVE-2024-52034

CVSS 3.1 Score 10 of 10 (high)

Details

Published Nov 22, 2024
CWE ID 78

Summary

CVE-2024-52034 is a newly disclosed OS Command Injection vulnerability. Hackers can exploit this issue in myPRO Manager by manipulating a parameter within a command, allowing them to inject arbitrary operating system commands without authentication. This vulnerability poses a significant risk as it enables attackers to gain unauthorized access and potentially take control of the affected system. Malicious activities could range from data theft to system damage. It is crucial for users to apply the necessary patches or updates as soon as they become available to mitigate this threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share