ConnectWise ScreenConnect Under Active Exploitation, Patch Available
Access Point Consulting
Hands-on cybersecurity for small to mid-sized companies.
ConnectWise has released a security update for its ScreenConnect software. Two vulnerabilities are associated with the patch, CVE-2024-1709 (CVSSv3: 10.0) and CVE-2024-1708 (CVSSv3: 8.4) these vulnerabilities can result in an attacker having direct access to confidential information or critical systems or causing remote code execution. These vulnerabilities are currently being utilized by threat actors, the vendor has provided indicators of compromise. Read more
Report by Matthew Fagan, Access Point Technology
SOC Analyst
11 个月https://youtu.be/vlMimfske3E