CVE-2024-57726
🔥 Known Exploited (CISA KEV)CRITICAL
9.9
CVSS Severity Score
Vulnerability Description
SimpleHelp remote support software v5.5.7 and before has a vulnerability that allows low-privileges technicians to create API keys with excessive permissions. These API keys can be used to escalate privileges to the server admin role.
Affected Platforms (CPE)
📦
Simple Help
Simplehelp
< 5.5.8
