CVE-2024-54048
CVSS 3.1 Score 6.1 of 10 (medium)
Details
Summary
CVE-2024-54048 is a recently disclosed Cross-Site Scripting (XSS) vulnerability that affects Adobe Connect versions 12.6 and 11.4.7 and earlier. This issue allows attackers to execute malicious JavaScript code in a victim's browser if the victim visits a specially crafted URL. By exploiting this vulnerability, hackers can steal sensitive information, install malware, or carry out other malicious activities. The XSS flaw poses a significant risk to organizations and individuals using the affected Adobe Connect versions, making it crucial for users to update their software as soon as possible.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Adobe Connect
Affected Vendors
- Adobe