


Perceptive Security
SOC/SIEM Consultancy

ConnectWise ScreenConnect contains a path traversal vulnerability which could allow an attacker to execute remote code or directly impact confidential data and …
Published:
28 April 2026 at 00:00:00
Alert date:
28 April 2026 at 18:01:42
Source:
cisa.gov
Enterprise Applications, Web Technologies
ConnectWise ScreenConnect contains a critical path traversal vulnerability (CVE-2024-1708) that allows attackers to execute remote code and access confidential data. This vulnerability directly impacts critical systems and has high severity due to the potential for complete system compromise. The vulnerability affects the remote access and support software commonly used in enterprise environments. Organizations using ConnectWise ScreenConnect should immediately apply available patches and security updates. The vulnerability poses significant risk to confidentiality, integrity, and availability of affected systems.
Technical details
Mitigation steps:
Affected products:
ConnectWise ScreenConnect
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2024-1708
https://www.connectwise.com/company/trust/security-bulletins/connectwise-screenconnect-23.9.8
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
