THREAT OPS › Threat News › [NVD] CVE-2024-6593 (CRITICAL 9.1) — Incorrect Authorization vulnerability in WatchGuard Authentication Gateway (aka Single Sign-On Agent) on Windows allows an attacker with network access to execute restricted management commands.
An attacker that has already gained network access could exploit this vulnerability
[NVD] CVE-2024-6593 (CRITICAL 9.1) — Incorrect Authorization vulnerability in WatchGuard Authentication Gateway (aka Single Sign-On Agent) on Windows allows an attacker with network access to execute restricted management commands. An attacker that has already gained network access could exploit this vulnerability
CVE-2024-6593 CVSS: 9.1 CRITICAL Published: 2024-09-25T12:15:05.217
Incorrect Authorization vulnerability in WatchGuard Authentication Gateway (aka Single Sign-On Agent) on Windows allows an attacker with network access to execute restricted management commands.
An attacker that has already gained network access could exploit this vulnerability to retrieve authenticated usernames and group membe
MITRE ATT&CK techniques
- CredentialsT1589.001
Indicators of compromise
- CVE-2024-6593cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2024-6593