CVE-2024-0325

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Feb 1, 2024
Updated: Feb 9, 2024
CWE ID 94
CWE ID 77

Summary

CVE-2024-0325 is a newly disclosed vulnerability affecting Helix Sync versions before 2024.1. This issue allows a local command injection, giving attackers the ability to execute arbitrary system commands within the application. The vulnerability was reported by Bryan Riggins and could potentially lead to serious security consequences if exploited. It is essential for users to update to the latest version of Helix Sync to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share