CVE Radar Logo
CVERadar
CVE Radar Logo
CVERadar

CVE-2024-51358

Medium Severity
SVRS
30/100

CVSSv3
NA/10

EPSS
0.04961/1

CVE-2024-51358 is a remote code execution vulnerability in Linux Server Heimdall v.2.6.1. This flaw allows attackers to execute arbitrary code by sending a specially crafted script during the "Add new application" process. Despite its low CVSS score (0), organizations should be aware of the potential for exploitation, especially since this CVE is tagged as "In The Wild". With an SVRS of 30, it is not considered a critical vulnerability requiring immediate action, but continuous monitoring is still recommended. Exploitation of this vulnerability could lead to complete system compromise, data breaches, and denial of service. This Heimdall vulnerability poses a risk to system integrity. Organizations using the affected software should apply available patches or mitigations as soon as possible to prevent potential attacks.

In The Wild
2024-11-05

2024-11-07

Indicators of Compromise

No IOCs found for this CVE

Exploits

No exploits found for this CVE

Enhance Your CVE Management with SOCRadar Vulnerability Intelligence
Get comprehensive CVE details, real-time notifications, and proactive threat management all in one platform.
CVE Details
Access comprehensive CVE information instantly
Real-time Tracking
Subscribe to CVEs and get instant updates
Exploit Analysis
Monitor related APT groups and threats
IOC Tracking
Analyze and track CVE-related IOCs

News

CVE-2024-51358 | Heimdall 2.6.1 Add New Application Privilege Escalation
vuldb.com2024-11-06
CVE-2024-51358 | Heimdall 2.6.1 Add New Application Privilege Escalation | A vulnerability, which was classified as critical, was found in Heimdall 2.6.1. Affected is an unknown function of the component Add New Application Handler. The manipulation leads to Privilege Escalation. This vulnerability is traded as CVE-2024-51358. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
rss
forum
news

Social Media

CVE-2024-51358 An issue in Linux Server Heimdall v.2.6.1 allows a remote attacker to execute arbitrary code via a crafted script to the Add new application. https://t.co/WRDGIBdJ5a
0
0
0

Affected Software

No affected software found for this CVE

References

ReferenceLink
[email protected]https://github.com/Kov404/CVE-2024-51358

CWE Details

CWE IDCWE NameDescription
CWE-918Server-Side Request Forgery (SSRF)The web server receives a URL or similar request from an upstream component and retrieves the contents of this URL, but it does not sufficiently ensure that the request is being sent to the expected destination.

CVE Radar

Real-time CVE Intelligence & Vulnerability Management Platform

CVE Radar provides comprehensive vulnerability intelligence by monitoring CVE databases, security advisories, and threat feeds. Get instant updates on new vulnerabilities, exploit details, and mitigation strategies specific to your assets.

Get Free Vulnerability Intelligence AccessAccess real-time CVE monitoring, exploit analysis, and threat intelligence