ScreenConnect critical bug now under attack as exploit code emerges
ID: 9a57f6d1-e28d-58fa-8940-14dae49e456a
STIX ID: report--9a57f6d1-e28d-58fa-8940-14dae49e456a
Feed Name: Bleeping Computer
Threat Score
ConnectWise disclosed two critical ScreenConnect flaws (CVE-2024-1708 authentication bypass and CVE-2024-1709 path traversal) that allow attackers to access the setup wizard to create admin accounts, write files outside intended directories (ZipSlip), and deploy payloads; proof-of-concept exploits and active exploitation against thousands of exposed servers were reported, prompting immediate patching and published IoCs/detection guidance.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
