logo

Exploiting the latest max-severity ConnectWise bug is 'embarrassingly easy'

ID: 0c092520-c541-5b25-bbd4-72ad821e9cc1

STIX ID: report--0c092520-c541-5b25-bbd4-72ad821e9cc1

Feed Name: The Register (Security)

Threat Score
90/100

Date Published: 2024-02-21

Date Updated: 2026-04-26

Author: Connor Jones

...
...

Infosec researchers disclosed a critical authentication-bypass RCE (CVSS 10) and a path traversal (CVSS 8.4) in ConnectWise ScreenConnect (affecting versions up to 23.9.7). Working PoCs were developed and attacks were later confirmed in the wild; attackers have used trivial exploits to gain administrative access and achieve RCE, and ConnectWise recommends immediate patching to 23.9.8 for on-prem installations. Limited IOCs (three IP addresses) and data showing ~3,800 vulnerable instances were provided, with no temporary mitigations beyond updating.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.