logo

ScreenConnect critical bug now under attack as exploit code emerges

ID: 9a57f6d1-e28d-58fa-8940-14dae49e456a

STIX ID: report--9a57f6d1-e28d-58fa-8940-14dae49e456a

Feed Name: Bleeping Computer

Threat Score
85/100

Date Published: 2024-02-21

Date Updated: 2026-04-20

Author: Bill Toulas

...
...

ConnectWise disclosed two critical ScreenConnect flaws (CVE-2024-1708 authentication bypass and CVE-2024-1709 path traversal) that allow attackers to access the setup wizard to create admin accounts, write files outside intended directories (ZipSlip), and deploy payloads; proof-of-concept exploits and active exploitation against thousands of exposed servers were reported, prompting immediate patching and published IoCs/detection guidance.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.