CVE-2024-8069

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Nov 12, 2024
Updated: Nov 13, 2024
CWE ID 94
CWE ID 502

Summary

CVE-2024-8069 is a newly identified vulnerability affecting Citrix Session Recording. It allows authenticated users on the same intranet as the session recording server to execute limited remote code, gaining the privileges of a NetworkService Account. An attacker can exploit this vulnerability to run malicious code and potentially gain unauthorized access to sensitive data or systems. This issue poses a significant risk to organizations that use Citrix Session Recording and have users connected to the same intranet as the server. It is crucial for affected organizations to apply the necessary patches or updates as soon as possible to mitigate this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share