CVE-2024-13068: Host Header Injection in Akinsoft's LimonDesk
Published Sep 3, 2025
·Updated
Origin Validation Error vulnerability in Akinsoft LimonDesk allows Forceful Browsing.
This issue affects LimonDesk: from s1.02.14 before v1.02.17.
Affected Software
1 affected component
Akinsoft LimonDesk>=s1.02.14<v1.02.17
Event History
Sep 3, 2025
CVE Published
via MITRE·01:12 PM
Data Sourced
via MITRE·01:12 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-13068?
CVE-2024-13068 has been assigned a severity rating that indicates a significant risk due to its potential for forceful browsing.
2
How do I fix CVE-2024-13068?
To fix CVE-2024-13068, upgrade Akinsoft LimonDesk to version 1.02.17 or later.
3
What is the impact of CVE-2024-13068?
CVE-2024-13068 can allow unauthorized users to access restricted areas of the application, leading to potential data exposure.
4
Which versions of Akinsoft LimonDesk are affected by CVE-2024-13068?
CVE-2024-13068 affects Akinsoft LimonDesk versions from 1.02.14 up to but not including 1.02.17.
5
Is there a workaround for CVE-2024-13068 if I cannot upgrade?
There are no known effective workarounds for CVE-2024-13068; upgrading is strongly recommended.