First published: Mon Nov 04 2024(Updated: )
Insufficiently protected credentials in DAV server settings in 1C-Bitrix Bitrix24 23.300.100 allow remote administrators to read proxy-server accounts passwords via HTTP GET request.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Citrix Receiver | =23.300.100 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-34883 has been classified with a high severity due to the potential for remote exploitation of sensitive credentials.
To fix CVE-2024-34883, update 1C-Bitrix Bitrix24 to the latest version where this vulnerability is addressed.
CVE-2024-34883 affects users of 1C-Bitrix Bitrix24 version 23.300.100.
CVE-2024-34883 allows remote attackers to read proxy-server account passwords, posing a significant security risk.
Yes, CVE-2024-34883 is a remote vulnerability that can be exploited via an HTTP GET request.