CVE-2024-52534
CVSS 3.1 Score 5.4 of 10 (medium)
Details
Published Dec 25, 2024
Updated: Jan 21, 2025
CWE ID 294
Summary
CVE-2024-52534 is a newly disclosed vulnerability that affects Dell ECS versions prior to 3.8.1.3. This issue involves an Authentication Bypass by Capture-replay vulnerability. With remote access, a low-privileged attacker can exploit this weakness, bypassing the authentication process and gaining unauthorized access to user sessions, potentially resulting in data theft.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- Dell Technologies