CVE-2024-20794

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published Apr 11, 2024
CWE ID 476

Summary

CVE-2024-20794 is a NULL Pointer Dereference vulnerability affecting Animate versions 23.0.4 and earlier. This issue could be exploited by an attacker to cause a system crash, resulting in a denial-of-service. The vulnerability can only be exploited if a victim opens a malicious file, making user interaction a necessary condition for successful exploitation. Animation software users are advised to update to the latest version to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share