CVE-2024-1709
β criticalSummary
ConnectWise ScreenConnect 23.9.7 and prior are affected by an Authentication Bypass Using an Alternate Path or Channel vulnerability, which may allow an attacker direct access to confidential information or critical systems.
CVSS Score
10.0
Critical
EPSS Score
94.3
Exploit Probability
Published Date
2024-02-21
First Seen: 2026-01-05
π Relative Risk Intelligence
This CVE is Extremely High Risk - more severe than 100.0% of all 360,673 vulnerabilities in our database.
#1
Top 5% most severe
Severity Percentile
π― CISA SSVC Assessment Updated: Feb 24, 2024
π Exploitation Status
Active
Exploits detected in the wild
βοΈ Automatable
YES
Can be exploited automatically
π₯ Technical Impact
Total
Complete system compromise possible
SSVC data provided by
CISA
Last Modified
2026-02-26
Source
NVD π
CVSS Vector 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
CWE IDs (Weakness Types)