CVE-2024-6592

CVSS 3.1 Score 9.1 of 10 (high)

Details

Published Sep 25, 2024
Updated: Oct 1, 2024
CWE ID 863

Summary

CVE-2024-6592 is an Incorrect Authorization vulnerability that affects the communication protocol between the WatchGuard Authentication Gateway (SSO Agent) on Windows and the WatchGuard Single Sign-On Client on Windows and MacOS. This issue permits Authentication Bypass, potentially exposing networks to unauthorized access. The Authentication Gateway is impacted through version 12.10.2, while the Windows and MacOS Single Sign-On Clients are affected through versions 12.7 and 12.5.4, respectively.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share