Skip to content
COOEY

EXPOSURES › CVE-2024-1708

CVE-2024-1708

CRITICAL ⌖ ON CISA KEV · EXPLOITED
DETAIL
SourceCISA-KEV · kev Published2026-04-28 Referencehttps://nvd.nist.gov/vuln/detail/CVE-2024-1708 ↗
⚡ RCE ⌖ EXPLOITED IN THE WILD SHAME 85/100 ransomwareexploited-in-wildrcesupply-chain

ConnectWise ScreenConnect exploited via CVE-2024-1708 enables remote code execution and ransomware-linked attacks.

This path traversal vulnerability allows attackers to execute arbitrary code on the ScreenConnect platform, directly impacting DIB organizations relying on remote management tools. The active exploitation and ransomware linkage indicate a high-risk exposure that could compromise sensitive data and critical systems if unpatched.

Shame score — Active exploitation of a critical RCE vulnerability linked to ransomware demonstrates a severe security failure that could lead to significant data breaches and compliance violations.

▸ RECOMMENDED ACTION  Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.

DESCRIPTION

ConnectWise ScreenConnect contains a path traversal vulnerability which could allow an attacker to execute remote code or directly impact confidential data and critical systems.

AFFECTED FEDRAMP PRODUCTS · 0
No correlated FedRAMP products.