CVE-2024-9798

CVSS 3.1 Score 5.3 of 10 (medium)

Details

Published Oct 10, 2024
Updated: Dec 19, 2024
CWE ID 312

Summary

CVE-2024-9798 is a newly disclosed vulnerability affecting health endpoints. This issue arises from the public accessibility of the health endpoint, granting unauthorized users the ability to view a list of all services. Attackers can leverage this information to target specific services, potentially leading to data breaches or further exploitation. Organizations are strongly advised to secure their health endpoints to mitigate the risk of this vulnerability. Additionally, monitoring logs and network traffic for unusual activity related to these endpoints is recommended.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share