← Back to browse · API

CVE-2024-57726

Severity
CRITICAL
CVSS
9.9
EPSS
0.08632
Risk score
67.62
CISA KEV
Yes
PoC
No
Published
2025-01-15
Modified
2026-08-04
First seen
2026-08-07
Aliases
EUVD-2024-53724, GHSA-8388-C89M-3X67
Products
SimpleHelp:SimpleHelp, n/a:n/a n/a
Sources
cisa.gov CVE-2024-57726
euvd EUVD-2024-53724

Description

SimpleHelp remote support software v5.5.7 and before has a vulnerability that allows low-privileges technicians to create API keys with excessive permissions. These API keys can be used to escalate privileges to the server admin role.

References