CVE-2024-1721: Medium severity HYPR Passwordless vulnerability
Published May 21, 2024
·Updated
Improper Verification of Cryptographic Signature vulnerability in HYPR Passwordless on Windows allows Malicious Software Update.This issue affects HYPR Passwordless: before 9.1.
Affected Software
1 affected component
HYPR Passwordless<9.1
Event History
May 21, 2024
CVE Published
via MITRE·03:41 PM
Data Sourced
via MITRE·03:41 PM
DescriptionWeakness
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-1721?
CVE-2024-1721 has been rated as a high severity vulnerability due to its potential for allowing malicious software updates.
2
How do I fix CVE-2024-1721?
To fix CVE-2024-1721, upgrade your HYPR Passwordless software to version 9.1 or later.
3
What types of systems are affected by CVE-2024-1721?
CVE-2024-1721 affects HYPR Passwordless software running on Windows before version 9.1.
4
What are the potential impacts of CVE-2024-1721?
The potential impacts of CVE-2024-1721 include unauthorized software installation and compromise of user authentication.
5
Is there a workaround for CVE-2024-1721 if I cannot upgrade immediately?
Currently, there are no known workarounds for CVE-2024-1721, and an immediate upgrade is recommended.