logo

ConnectWise urges ScreenConnect admins to patch critical RCE flaw

ID: d7e0e055-99c3-50ee-9fad-4a2a81385ba4

STIX ID: report--d7e0e055-99c3-50ee-9fad-4a2a81385ba4

Feed Name: Bleeping Computer

Threat Score
78/100

Date Published: 2024-02-20

Date Updated: 2026-04-20

Author: Sergiu Gatlan

...
...

ConnectWise issued emergency patches for ScreenConnect to remediate a critical authentication-bypass remote code execution flaw and a path-traversal issue; Huntress published a PoC and internet scans (Censys/Shodan) show thousands of on-premise servers remain exposed, so on-premise admins must update to 23.9.8 immediately to mitigate high-risk remote compromise.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.