CVE-2024-53647

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Dec 31, 2024
CWE ID 400
CWE ID 770
CWE ID 307

Summary

CVE-2024-53647 is a vulnerability affecting Trend Micro ID Security version 3.0 and below. This issue permits an attacker to overwhelm the system with an unlimited number of email verification requests, potentially resulting in service abuse or denial of service. The vulnerability exists due to insufficient restriction on the number of email verification requests, allowing an attacker to exploit this weakness repeatedly. The impact of this vulnerability includes service disruption and potential misuse of resources, posing a significant threat to the affected system. Users are advised to update to the latest version of Trend Micro ID Security to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share