CVE-2024-5445
CVSS V2 None
CVSS V3 None
Description
Ecosystem Agent version 4 < 4.5.1.2597 and Ecosystem Agent version 5 < 5.1.4.2473 did not properly validate SSL/TLS certificates, which could allow a malicious actor to perform a Man-in-the-Middle and intercept traffic between the agent and N-able servers from a privileged network position.
Overview
- CVE ID
- CVE-2024-5445
- Assigner
- N-able
- Vulnerability Status
- PUBLISHED
- Published Version
- 2024-08-08T22:04:11.534Z
- Last Modified Date
- 2024-08-08T22:04:11.534Z
Weakness Enumerations
References
Sources
Source Name | Source URL |
---|---|
NIST | https://nvd.nist.gov/vuln/detail/CVE-2024-5445 |
MITRE | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-5445 |
History
Created | Old Value | New Value | Data Type | Notes |
---|---|---|---|---|
2024-08-09 13:09:44 | Added to TrackCVE |