SimpleHelp remote support software v5.5.7 and before has a vulnerability that allows low-privileges technicians to create API keys with excessive permissions. These API keys can be used to escalate privileges to the server admin role.
References
Configurations
History
No history.
Information
Published : 2025-01-15 23:15
Updated : 2025-01-31 21:15
NVD link : CVE-2024-57726
Mitre link : CVE-2024-57726
CVE.ORG link : CVE-2024-57726
JSON object : View
Products Affected
simple-help
- simplehelp
CWE
