Rewterz
PatchWork APT Threat Actor Group – Active IOCs
October 8, 2024
Rewterz
US Government Wiretapping Platform Allegedly Targeted by Hacking Attempts at AT&T and Verizon
October 8, 2024

CVE-2024-5817 – GitHub Enterprise Server Vulnerability

Severity

Medium

Analysis Summary

CVE-2024-5817

GitHub Enterprise Server could allow a remote authenticated attacker to obtain sensitive information, caused by incorrect authorization vulnerability. By sending a specially crafted request, a remote attacker could exploit this vulnerability to obtain sensitive information.

Impact

  • Information Disclosure

Indicators of Compromise

CVE

  • CVE-2024-5817

Affected Vendors

GitHub

Affected Products

  • GitHub Enterprise Server 3.10.13

Remediation

Upgrade to the latest version of GitHub Enterprise Server, available from the GitHub Website.

GitHub Website