Description
AnyDesk through 8.1.0 on Windows, when Allow Direct Connections is enabled, inadvertently exposes a public IP address within network traffic. The attacker must know the victim's AnyDesk ID.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Mon, 18 Nov 2024 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Anydesk
Anydesk anydesk |
|
| Weaknesses | CWE-532 | |
| CPEs | cpe:2.3:a:anydesk:anydesk:-:*:*:*:*:windows:*:* | |
| Vendors & Products |
Anydesk
Anydesk anydesk |
|
| Metrics |
cvssV3_1
|
Mon, 18 Nov 2024 05:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | AnyDesk through 8.1.0 on Windows, when Allow Direct Connections is enabled, inadvertently exposes a public IP address within network traffic. The attacker must know the victim's AnyDesk ID. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-11-23T04:55:41.101Z
Reserved: 2024-11-18T00:00:00.000Z
Link: CVE-2024-52940
Updated: 2024-11-18T16:00:07.972Z
Status : Awaiting Analysis
Published: 2024-11-18T05:15:05.200
Modified: 2024-11-18T17:11:17.393
Link: CVE-2024-52940
No data.
OpenCVE Enrichment
No data.
Weaknesses