CVE-2024-57726 – SimpleHelp Remote Access

CVSS 9.9 CRITICAL

“Active attacks are hitting SimpleHelp, turning remote support into a direct entry point.”

This patch addresses two vulnerabilities in SimpleHelp that significantly impact remote access security. CVE-2024-57726 has a CVSS score of 9.9, which is Critical severity, while CVE-2024-57728 carries a CVSS score of 7.2, which is High severity. These issues expose core remote support functionality, potentially allowing attackers to gain unauthorized access or disrupt managed systems.

Both vulnerabilities are actively exploited in the wild, confirming real-world attacks are already occurring. This elevates the urgency from risk to active threat. The patch closes these attack paths and is essential to protect systems relying on SimpleHelp for remote operations.

Key Details

Affected Product
Simple-help Simplehelp
Attack Vector
Network
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
CWE Classification
CWE-862
Patch this CVE on all your endpoints in under 5 minutes. First 200 endpoints are free forever, scale as needed.