SimpleHelp remote support software v5.5.7 and earlier contains critical path traversal vulnerabilities allowing unauthenticated attackers to download arbitrary files including server configuration files and hashed passwords. This vulnerability is actively exploited and listed in CISA KEV.
Data Source: CIRCL
Confidence: HIGH
Exploitation Method: DIRECT_NETWORK
CVE Published: 2025-01-15
Added to CISA KEV: 2025-02-13 29 DAYS BETWEEN CVE AND KEV
CVE-2024-57727 is a critical path traversal vulnerability affecting SimpleHelp remote support software, which has been actively exploited by malicious actors, including those involved in ransomware campaigns [1].
CISA added CVE-2024-57727 to its Known Exploited Vulnerabilities (KEV) Catalog on Feb. 13, 2025. CISA urges software vendors, downstream customers, and end users to immediately implement the Mitigations listed in this advisory based on confirmed compromise or risk of compromise.
SimpleHelp remote support software v5.5.7 and before is vulnerable to multiple path traversal vulnerabilities that enable unauthenticated remote attackers to download arbitrary files from the SimpleHelp host via crafted HTTP requests. These files include server configuration files containing various…
SimpleHelp remote support software v5.5.7 and before is vulnerable to multiple path traversal vulnerabilities that enable unauthenticated remote attackers to ... CVE-2024-57727 is a path traversal vulnerability that allows unauthenticated attackers to access sensitive files from SimpleHelp host. The…
CVE-2024-57727. Contribute to imjdl/CVE-2024-57727 development by creating an account on GitHub.