CVE-2024-57649
CVSS 3.1 Score 7.5 of 10 (high)
Details
Summary
CVE-2024-57649 is a newly disclosed vulnerability affecting the qst_vec_set component in openlink virtuoso-opensource version 7.2.11. This issue enables attackers to trigger a Denial of Service (DoS) condition by crafting specific SQL statements. By exploiting this vulnerability, attackers can overload the targeted system, causing it to become unresponsive and preventing legitimate users from accessing the service. This can lead to significant downtime and potential financial losses for affected organizations. It is strongly recommended that users of openlink virtuoso-opensource v7.2.11 upgrade to a patched version as soon as possible to mitigate the risk of this vulnerability.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Virtuoso-Opensource
Affected Vendors
- OpenLink Software Inc