Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-1683


A DLL injection vulnerability exists where an authenticated, low-privileged local attacker could modify application files on the TIE Secure Relay host, which could allow for overriding of the configuration and running of new Secure Relay services.


Published

2024-02-23T01:15:52.700

Last Modified

2024-12-17T17:10:15.347

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 7.3 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-78
  • Type: Primary
    CWE-78

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application tenable identity_exposure < 3.59.4 Yes

References