Critical Vulnerabilities in ConnectWise ScreenConnect Exploited in Active Attacks
Article Content
- •CVE-2024-1708 and CVE-2024-1709 are critical vulnerabilities in ConnectWise ScreenConnect.
- •CISA confirmed active exploitation of CVE-2024-1708 on April 28, 2026.
- •Organizations must update to ScreenConnect version 23.9.8 to mitigate these vulnerabilities.
ConnectWise ScreenConnect has been compromised by two critical vulnerabilities, CVE-2024-1708 and CVE-2024-1709, which allow attackers to bypass authentication and execute remote code. The vulnerabilities were disclosed on February 19, 2024, with CVE-2024-1709 rated critical (CVSS 10.0) for authentication bypass, and CVE-2024-1708 rated high (CVSS 8.4) for path traversal. Attackers can exploit these vulnerabilities to gain unauthorized access and execute malicious code on affected systems. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added CVE-2024-1708 to its Known Exploited Vulnerabilities (KEV) catalog on April 28, 2026, confirming active exploitation in the wild. Organizations using versions 23.9.7 and earlier must urgently update to version 23.9.8 to mitigate these threats. The vulnerabilities have been linked to ongoing ransomware campaigns, emphasizing the need for immediate action.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (9)
Following this threat?
Track APT28, ConnectWise and CVE-2024-1708 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Trellix Reports on Five Evasive Cyber Campaigns in 2026 Trellix's SecondSight Threat Hunting Report details five significant cyber campaigns from the first half of 2026, including APT28 and the Axios npm supply chain attack. Attackers exploited trusted infrastructures and employed advanced evasion techniques, such as using compromised government accounts and weaponizing…
2026 AV-Comparatives EPR Test Results Released AV-Comparatives published the results of its 2026 Endpoint Prevention and Response (EPR) Test, evaluating 14 enterprise security products against 50 multi-stage attack scenarios. The test, which ran from May to August 2026, incorporated AI-assisted techniques and followed the MITRE ATT&CK framework. Eleven products…