CVE-2024-53706

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Jan 9, 2025
CWE ID 269

Summary

CVE-2024-53706 is a recently disclosed vulnerability affecting the Gen7 SonicOS Cloud platform NSv. This issue grants a remote, authenticated, low-privileged attacker the ability to elevate their privileges to the highest level, `root`. Successful exploitation of this vulnerability could potentially provide an attacker with the capability to execute arbitrary code. This threat poses significant risks, as it permits attackers to bypass security restrictions and gain unrestricted access to the affected system. Organizations utilizing the Gen7 SonicOS Cloud platform NSv are strongly advised to apply the available patch promptly to mitigate this privilege escalation risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share