ConnectWise ScreenConnect 23.9.7 and prior are affected by an Authentication Bypass Using an Alternate Path or Channel vulnerability, which may allow an attacker direct access to confidential information or critical systems.
History

Tue, 29 Jul 2025 21:15:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:a:connectwise:screenconnect:-:*:*:*:*:*:*:*
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'active', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 15 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.94329}

epss

{'score': 0.94356}


cve-icon MITRE

Status: PUBLISHED

Assigner: cisa-cg

Published:

Updated: 2025-07-30T01:37:06.637Z

Reserved: 2024-02-21T15:05:07.113Z

Link: CVE-2024-1709

cve-icon Vulnrichment

Updated: 2024-08-01T18:48:21.899Z

cve-icon NVD

Status : Analyzed

Published: 2024-02-21T16:15:50.420

Modified: 2025-01-27T21:48:25.323

Link: CVE-2024-1709

cve-icon Redhat

No data.