CVE-2024-54048

CVSS 3.1 Score 6.1 of 10 (medium)

Details

Published Dec 10, 2024
Updated: Dec 18, 2024
CWE ID 79

Summary

CVE-2024-54048 is a recently disclosed Cross-Site Scripting (XSS) vulnerability that affects Adobe Connect versions 12.6 and 11.4.7 and earlier. This issue allows attackers to execute malicious JavaScript code in a victim's browser if the victim visits a specially crafted URL. By exploiting this vulnerability, hackers can steal sensitive information, install malware, or carry out other malicious activities. The XSS flaw poses a significant risk to organizations and individuals using the affected Adobe Connect versions, making it crucial for users to update their software as soon as possible.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share