CVE-2024-1708
- CVSS
- —
- EPSS
- 0.954 (99.9th percentile)
- CISA KEV
- Added 2026-04-28, due 2026-05-12
- Exploitation
- No report
- Public exploits
- 1 repositories
- State
- Unknown
Coverage
Actively exploitedCritical 100HuntressAuthoritative. Authoritative publisher: a primary source, or a newsroom with formal editorial standards
SlashAndGrab | Huntress
Adversaries have been VERY busy in the wake of the ScreenConnect vulnerabilities (CVE-2024-1709 & CVE-2024-1708). Here’s all the post-exploitation details, tradecraft, and tactics we’ve observed so far!
Actively exploitedCritical 100HuntressAuthoritative. Authoritative publisher: a primary source, or a newsroom with formal editorial standards
ConnectWise ScreenConnect CVE-2024-1709 & CVE-2024-1708 | Huntress
This blog discusses the Huntress Team's analysis efforts of the two vulnerabilities and software weaknesses in ConnectWise ScreenConnect (CVE-2024-1708 and CVE-2024-1709) and the technical details behind this attack.
What we observed
- poc publishedpoc-in-github
- poc publishedpoc-in-github
- poc publishedpoc-in-github
- kev addedcisa-kev