CVE-2024-52940

Published Nov 18, 2024

Last updated 3 months ago

Overview

Description
AnyDesk through 8.1.0 on Windows, when Allow Direct Connections is enabled, inadvertently exposes a public IP address within network traffic. The attacker must know the victim's AnyDesk ID.
Source
cve@mitre.org
NVD status
Awaiting Analysis

Risk scores

CVSS 3.1

Type
Secondary
Base score
7.5
Impact score
3.6
Exploitability score
3.9
Vector string
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Severity
HIGH

Weaknesses

134c704f-9b21-4f2e-91b3-4a467353bcc0
CWE-532

Social media

Hype score
Not currently trending
  1. AnyDesk の脆弱性 CVE-2024-52940:パッチ未適用の状態で PoC が公開 https://t.co/s1bTdo00mY #AllowDirectConnections #AnyDesk #Exploit #GitHub #PoCExploit #Vulnerability

    @iototsecnews

    2 Dec 2024

    187 Impressions

    2 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  2. Top 5 Trending CVEs: 1 - CVE-2023-20963 2 - CVE-2024-46938 3 - CVE-2024-52940 4 - CVE-2024-0012 5 - CVE-2024-10220 #cve #cvetrends #cveshield #cybersecurity https://t.co/4Fua3CAN6W

    @CVEShield

    23 Nov 2024

    69 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  3. 🚨 Attention AnyDesk Users! A critical security flaw (CVE-2024-52940) has been discovered, exposing user IP addresses and leaving networks vulnerable to attacks. patch your systems immediately and secure your organization with Varutra's expert solutions! https://t.co/bmM9nChbmR

    @Infosharenew

    22 Nov 2024

    24 Impressions

    1 Retweet

    1 Like

    0 Bookmarks

    1 Reply

    0 Quotes

  4. Attention AnyDesk Users! A critical security flaw (CVE-2024-52940) has been discovered, exposing user IP addresses and leaving networks vulnerable to attacks -patch your systems immediately and secure your organization with Varutra's expert solutions! https://t.co/fVE6QX7Lve

    @varutra

    22 Nov 2024

    31 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    1 Reply

    0 Quotes

  5. CVE-2024-52940: AnyDesk Vulnerability Exposes User IP Addresses, PoC Published https://t.co/dEtbGEA7Q0

    @Dinosn

    22 Nov 2024

    8140 Impressions

    66 Retweets

    184 Likes

    57 Bookmarks

    0 Replies

    0 Quotes

  6. ALERT! Critical vulnerability (CVE-2024-52940) found in AnyDesk remote desktop app, exposing user IP addresses. Disable "Allow Direct Connections" & use a VPN. Stay safe! #AnyDeskVulnerability #Cybersecurity #StaySafe https://t.co/8iBsSYnpqX

    @CyberPhorm

    21 Nov 2024

    67 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  7. CVE-2024-52940 : AnyDesk IP Leak Vulnerability https://t.co/RzTEcjsUAw https://t.co/xA3w2Ba7ih

    @elhackernet

    20 Nov 2024

    19564 Impressions

    92 Retweets

    272 Likes

    109 Bookmarks

    5 Replies

    5 Quotes

  8. CVE-2024-52940 : IP AnyDesk vulnerability https://t.co/tg5hDYR7AZ https://t.co/Ohf8D8NFJu

    @freedomhack101

    20 Nov 2024

    35 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  9. AnyDesk IP Leak Vulnerability CVE-2024-52940 https://t.co/wfRxHP16tN

    @turne85540

    19 Nov 2024

    34 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  10. 💡AnyDesk IP Leak Vulnerability CVE-2024-52940 https://t.co/fJrwarW503

    @DarkWebInformer

    18 Nov 2024

    5953 Impressions

    15 Retweets

    66 Likes

    31 Bookmarks

    1 Reply

    2 Quotes

  11. CVE-2024-52940 Public IP Exposure in AnyDesk Windows Versions up to 8.1.0 AnyDesk up to version 8.1.0 on Windows has an issue when "Allow Direct Connections" is turned on. It accidentally reveals a public IP addr... https://t.co/OjLhdmjR9S

    @VulmonFeeds

    18 Nov 2024

    47 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  12. CVE-2024-52940 AnyDesk through 8.1.0 on Windows, when Allow Direct Connections is enabled, inadvertently exposes a public IP address within network traffic. The attacker must know t… https://t.co/tfnzXGg3bA

    @CVEnew

    18 Nov 2024

    452 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes