CVE-2024-52888
CVSS 3.1 Score 5.4 of 10 (medium)
Details
Published Apr 27, 2025
Updated: Apr 29, 2025
CWE ID 79
Summary
CVE-2024-52888 is a vulnerability affecting an authenticated endpoint where the portal runs a script while trying to display a directory or file properties. This issue can potentially lead to arbitrary code execution, posing a serious security risk. An attacker can exploit this vulnerability to gain unauthorized access and execute malicious code on the system. The vulnerability is limited to authenticated users, but it still necessitates immediate attention and a patch to protect against potential attacks.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- MobileAccess