First published: Wed Feb 21 2024(Updated: )
ConnectWise ScreenConnect 23.9.7 and prior are affected by path-traversal vulnerability, which may allow an attacker the ability to execute remote code or directly impact confidential data or critical systems.
Credit: 9119a7d8-5eab-497f-8521-727c672e3725
Affected Software | Affected Version | How to fix |
---|---|---|
ConnectWise ScreenConnect | <23.9.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-1708 is classified as a critical vulnerability due to its potential to allow remote code execution and impact confidential data.
To remediate CVE-2024-1708, upgrade ConnectWise ScreenConnect to version 23.9.8 or later.
CVE-2024-1708 affects all versions of ConnectWise ScreenConnect prior to 23.9.8.
Yes, CVE-2024-1708 can be exploited remotely by manipulating path traversal mechanisms.
CVE-2024-1708 may allow attackers to execute remote code, thereby compromising critical systems and data.