A vulnerability has been discovered in Privileged Remote Access (PRA) and Remote Support (RS) which can allow an attacker with existing administrative privileges to inject commands and run as a site user.

Published: 2024-12-18

CVSS: 7.2

CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

Download CVE-2024-12686 POC (Proof-of-Concept) here:

Tip: Download official Tor Browser at https://www.torproject.org/download/ to access .onion links.

https://connollyfinan.ie/poc-695-cve-2022-21663/

https://connollyfinan.ie/poc-405-cve-2016-4979/

https://connollyfinan.ie/poc-40-cve-2022-0778/

https://connollyfinan.ie/poc-550-cve-2024-47596/

https://connollyfinan.ie/poc-512-cve-2019-3980/