CVE Vulnerabilities

CVE-2024-30170

Published: Aug 06, 2024 | Modified: Aug 12, 2024
CVSS 3.x
9.1
CRITICAL
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

PrivX before 34.0 allows data exfiltration and denial of service via the REST API. This is fixed in minor versions 33.1, 32.3, 31.3, and later, and in major version 34.0 and later,

Affected Software

NameVendorStart VersionEnd Version
PrivxSsh22.0 (including)31.3 (excluding)
PrivxSsh32.0 (including)32.3 (excluding)
PrivxSsh33.0 (including)33.0 (including)

References