CVE-2024-53473

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Dec 7, 2024
Updated: Dec 12, 2024
CWE ID 862

Summary

CVE-2024-53473 refers to a vulnerability in WeGIA 3.2.0 versions prior to 3998672. This issue allows unauthenticated users to change a password for an account without proper verification, potentially leading to account takeover and unauthorized access. The vulnerability can be exploited remotely, posing a significant risk to systems using affected versions of WeGIA. Organizations are strongly advised to upgrade to a patched version as soon as possible to mitigate this threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share