CVE-2024-45045
Collabora
CVE-2024-45045 is a JavaScript injection vulnerability in the mobile versions of Collabora Online. This flaw allows attackers to inject malicious JavaScript code via specially crafted URLs within documents. With a SOCRadar Vulnerability Risk Score (SVRS) of 58, this vulnerability is considered moderate, but warrants attention, especially given the potential for mobile app compromise. The Android JavaScript interface grants access to internal functions, raising the likelihood of successful exploitation and potentially impacting user data or device security. Users of Collabora Online on Android or iOS devices should immediately update to the latest version available in their respective app stores. Although the CVSS score is 6.1, the SVRS highlights real-world exploitability. There are no known workarounds, making patching the only effective mitigation. Failure to update can lead to unauthorized access and control of the application, affecting document security.
Description:
CVE-2024-45045 is a vulnerability in Collabora Online's mobile variants that allows JavaScript injection via URL-encoded values in document links. This vulnerability is considered high risk due to the potential for compromising the app through the Android JavaScript interface.
Key Insights:
- SVRS Score: 42, indicating a moderate risk.
- Threat Actors: No specific threat actors or APT groups have been identified as actively exploiting this vulnerability.
- Exploit Status: Active exploits have not been published.
- CISA Warnings: The Cybersecurity and Infrastructure Security Agency (CISA) has not issued a warning for this vulnerability.
- In the Wild: The vulnerability is not currently being exploited in the wild.
Mitigation Strategies:
- Update to the latest version of Collabora Online provided by the platform app store.
- Avoid clicking on links in documents from untrusted sources.
- Use a web browser with strong security features.
- Implement a web application firewall (WAF) to block malicious requests.
Additional Information:
If users have additional queries regarding this incident, they can use the 'Ask to Analyst' feature, contact SOCRadar directly, or open a support ticket for more information if necessary.
Indicators of Compromise
Exploits
News
Social Media
Affected Software
References
CWE Details
CVE Radar
Real-time CVE Intelligence & Vulnerability Management Platform
CVE Radar provides comprehensive vulnerability intelligence by monitoring CVE databases, security advisories, and threat feeds. Get instant updates on new vulnerabilities, exploit details, and mitigation strategies specific to your assets.