CVE-2024-56445

CVSS 3.1 Score 4.3 of 10 (medium)

Attack Complexity low
Availability low
Confidentiality none
Integrity none
Scope unchanged
Privileges Required none

Details

Published Jan 8, 2025
CWE ID 287

Summary

CVE-2024-56445 is an instruction authentication bypass vulnerability identified in the Findnetwork module. This issue allows unauthorized instructions to bypass the intended authentication process. Successful exploitation of this vulnerability could result in features functioning abnormally, potentially leading to significant disruptions or unintended consequences. Organizations using the Findnetwork module are urged to apply the available patch or mitigation measures as soon as possible to protect against potential attacks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share