Pexip Infinity Connect before 1.13.0 lacks sufficient authenticity checks during the loading of resources, and thus remote attackers can cause the application to run untrusted code.
                
            Metrics
Affected Vendors & Products
References
        | Link | Providers | 
|---|---|
| https://docs.pexip.com/admin/security_bulletins.htm | 
                     | 
            
History
                    Thu, 03 Apr 2025 14:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Weaknesses | CWE-863 | |
| Metrics | 
        
        cvssV3_1
         
 
  | 
Wed, 02 Apr 2025 21:00:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | Pexip Infinity Connect before 1.13.0 lacks sufficient authenticity checks during the loading of resources, and thus remote attackers can cause the application to run untrusted code. | |
| References | 
         | 
Status: PUBLISHED
Assigner: mitre
Published: 2025-04-02T00:00:00.000Z
Updated: 2025-04-03T13:20:55.565Z
Reserved: 2024-06-15T00:00:00.000Z
Link: CVE-2024-38392
Updated: 2025-04-03T13:20:46.977Z
Status : Awaiting Analysis
Published: 2025-04-02T21:15:31.170
Modified: 2025-04-07T14:18:49.830
Link: CVE-2024-38392
No data.