CVE-2024-57641
CVSS 3.1 Score 7.5 of 10 (high)
Details
Summary
CVE-2024-57641 is a newly disclosed vulnerability affecting the sqlexp component in openlink virtuoso-opensource version 7.2.11. This issue permits attackers to execute denial-of-service (DoS) attacks through specifically crafted SQL statements. The vulnerability is not disclosed in great detail, but it is believed to allow an attacker to overload the targeted system with excessive resource usage, leading to a denial-of-service condition. It is advised that users of openlink virtuoso-opensource version 7.2.11 update to a patched version as soon as possible to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Virtuoso-Opensource
Affected Vendors
- OpenLink Software Inc