Description
ConnectWise ScreenConnect has an authentication bypass vulnerability. An attacker can bypass the authentication with a specially crafted path and get access to the setup wizard.
Remediation
Upgrade to the latest version of ScreenConnect
References
Related Vulnerabilities
Lighttpd Other Vulnerability (CVE-2007-3950)
XWiki Improper Access Control Vulnerability (CVE-2023-29513)
XWiki Other Vulnerability (CVE-2022-36090)
WordPress Deserialization of Untrusted Data Vulnerability (CVE-2022-21663)
WordPress Plugin iThemes Security (formerly Better WP Security) Security Bypass (7.9.0)