Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2024-34882

Insufficiently protected credentials in SMTP server settings in 1C-Bitrix Bitrix24 23.300.100 allows remote administrators to send SMTP account passwords to an arbitrary server via HTTP POST request.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 27.9%
CVSS Severity
CVSS v3 Score 4.9
Products affected by CVE-2024-34882
  • Bitrix24 » Bitrix24 » Version: 23.300.100
    cpe:2.3:a:bitrix24:bitrix24:23.300.100


Contact Us

Shodan ® - All rights reserved