CVE-2024-54218
CVSS 3.1 Score 6.5 of 10 (medium)
Details
Published Dec 9, 2024
CWE ID 862
Summary
CVE-2024-54218 is a newly disclosed vulnerability affecting Thehp AIO Contact, a software used for managing contacts. The issue involves a missing authorization check, which allows unauthorized users to execute certain actions within the application. This vulnerability potentially impacts versions from n/a to 2.8.1. Successful exploitation could lead to unintended modifications or access to sensitive contact information. It is strongly recommended that users upgrade to the latest version of Thehp AIO Contact to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share