CVE-2024-54218

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Dec 9, 2024
CWE ID 862

Summary

CVE-2024-54218 is a newly disclosed vulnerability affecting Thehp AIO Contact, a software used for managing contacts. The issue involves a missing authorization check, which allows unauthorized users to execute certain actions within the application. This vulnerability potentially impacts versions from n/a to 2.8.1. Successful exploitation could lead to unintended modifications or access to sensitive contact information. It is strongly recommended that users upgrade to the latest version of Thehp AIO Contact to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share