CVE-2024-3262

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published Apr 4, 2024
CWE ID 200

Summary

CVE-2024-3262 is a newly identified information exposure vulnerability affecting RT software version 4.4.1. This issue permits local attackers to access sensitive information, including vulnerability tickets, even after the session has been terminated. The vulnerability arises due to the application storing the data in the browser cache, making it susceptible to unauthorized retrieval. This exposure can potentially compromise the security of the affected device.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share