CVE-2024-52443

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Nov 20, 2024
Updated: Nov 21, 2024
CWE ID 502

Summary

CVE-2024-52443 is a Deserialization of Untrusted Data vulnerability affecting the Nerijus Masikonis Geolocator software. This issue allows an attacker to perform Object Injection by deserializing untrusted data. The vulnerability affects versions of Geolocator from undisclosed to 1.1. Successful exploitation could result in arbitrary code execution or denial of service, posing a significant security risk. Users are strongly encouraged to update to the latest version of the software as soon as possible to mitigate this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share