ConnectWise ScreenConnect through 23.8.4 allows man-in-the-middle attackers to achieve remote code execution via crafted messages.
https://www.connectwise.com/company/trust/security-bulletins/connectwise-screenconnect-23.8-security-fix
https://web.archive.org/web/20240208140218/https://gotham-security.com/screenconnect-cve-2023-47256
Source: Mitre, NVD
Published: 2024-02-01
Updated: 2024-02-15
Base Score: 7.6
Vector: CVSS2#AV:N/AC:H/Au:N/C:C/I:C/A:C
Severity: High
Base Score: 8.1
Vector: CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H