CVE-2024-28029

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Mar 21, 2024
Updated: Mar 25, 2024
CWE ID 285

Summary

CVE-2024-28029 is a newly identified vulnerability that affects server-side privileges. The issue resides in inadequate verification of privileges, enabling users with limited access to bypass authorization and access privileged functionalities. This can potentially lead to significant security risks, as unauthorized users may gain elevated access and execute unintended actions. The precise implications and exploitability of this vulnerability are still under investigation. Organizations are urged to apply patches or mitigations as soon as possible to safeguard their systems.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share