CVE-2024-57056
CVSS 3.1 Score 5.4 of 10 (medium)
Details
Published Feb 18, 2025
CWE ID 613
Summary
CVE-2024-57056 is a vulnerability affecting WombatDialer versions prior to 25.02. This issue stems from incorrect cookie session handling, leading to the full session identity being logged on the system. A malicious actor could exploit this vulnerability to impersonate an existing user session, gaining unauthorized access and potentially sensitive information. It is essential that users update to the latest version of WombatDialer to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share