CVE-2024-56898
CVSS 3.1 Score 8.1 of 10 (high)
Details
Summary
CVE-2024-56898 is a new vulnerability affecting Geovision GV-ASWeb version 6.1.0.0 and below. This issue involves incorrect access control, allowing unprivileged attackers to exploit it and create new user accounts through crafted HTTP requests. The vulnerability grants attackers with low-level privileges the ability to manage accounts, posing a significant risk to system security. Successful exploitation could lead to unauthorized access and potential data breaches. It is recommended that affected organizations upgrade to the latest version of Geovision GV-ASWeb to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.