May 7, 2024, 1 p.m. | Douglas Bonderud

Security Intelligence securityintelligence.com

On February 19, ConnectWise reported two vulnerabilities in its ScreenConnect product, CVE-2024-1708 and 1709. The first is an authentication bypass vulnerability, and the second is a path traversal vulnerability. Both made it possible for attackers to bypass authentication processes and execute remote code. While ConnectWise initially reported that the vulnerabilities had proof-of-concept but hadn’t been […]


The post Remote access risks on the rise with CVE-2024-1708 and CVE-2024-1709 appeared first on Security Intelligence.

access attackers authentication authentication bypass bypass bypass vulnerability code connectwise cve cve-2024 cve-2024-1708 cve-2024-1709 execute remote code february patch patch management path path traversal path traversal vulnerability processes product remote access remote code risk management risks screenconnect security patch vulnerabilities vulnerability

More from securityintelligence.com / Security Intelligence

Information Security Engineers

@ D. E. Shaw Research | New York City

Technology Security Analyst

@ Halton Region | Oakville, Ontario, Canada

Senior Cyber Security Analyst

@ Valley Water | San Jose, CA

Computer and Forensics Investigator

@ ManTech | 221BQ - Cstmr Site,Springfield,VA

Senior Security Analyst

@ Oracle | United States

Associate Vulnerability Management Specialist

@ Diebold Nixdorf | Hyderabad, Telangana, India