PatchWork APT Threat Actor Group – Active IOCs
October 8, 2024US Government Wiretapping Platform Allegedly Targeted by Hacking Attempts at AT&T and Verizon
October 8, 2024PatchWork APT Threat Actor Group – Active IOCs
October 8, 2024US Government Wiretapping Platform Allegedly Targeted by Hacking Attempts at AT&T and Verizon
October 8, 2024Severity
Medium
Analysis Summary
CVE-2024-5817
GitHub Enterprise Server could allow a remote authenticated attacker to obtain sensitive information, caused by incorrect authorization vulnerability. By sending a specially crafted request, a remote attacker could exploit this vulnerability to obtain sensitive information.
Impact
- Information Disclosure
Indicators of Compromise
CVE
- CVE-2024-5817
Affected Vendors
Affected Products
- GitHub Enterprise Server 3.10.13
Remediation
Upgrade to the latest version of GitHub Enterprise Server, available from the GitHub Website.