CVE-2024-57426
CVSS 3.1 Score 7.3 of 10 (high)
Details
Summary
CVE-2024-57426 is a newly disclosed vulnerability affecting NetMod VPN Client version 5.3.1. This issue allows an attacker to execute arbitrary code by injecting a malicious DLL into a directory where the application loads dependencies. The vulnerability occurs due to inadequate validation of dynamically loaded libraries, making it possible for an attacker to exploit this weakness and gain unauthorized access to the system. This can potentially lead to serious consequences, including data theft, unauthorized system access, and more. Organizations using NetMod VPN Client are advised to update to the latest version or take appropriate measures to secure their systems against this threat.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- VPN Client
Affected Vendors
- SpiderSilk