logo

More On ConnectWise ScreenConnect vulnerability

ID: cad898e4-3c13-5dd9-8106-c0a57cdb7f94

STIX ID: report--cad898e4-3c13-5dd9-8106-c0a57cdb7f94

Feed Name: ThreatLocker Blog

Threat Score
85/100

Date Published: 2025-01-03

Date Updated: 2026-05-01

...
...

**ConnectWise ScreenConnect critical vulnerabilities and active exploitation** — The report describes critical authentication-bypass, path traversal, and ZipSlip vulnerabilities in ConnectWise ScreenConnect that can allow attackers to execute code as NT Authority\SYSTEM; public PoCs and a pending Metasploit module indicate the flaws are being actively exploited and pose high risk of full server compromise. It also outlines detection and mitigation recommendations (ThreatLocker Detect policy and allowlisting).

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.