ClickCease

Meet Armis at SecTor 2024

Learn More

Rejetto HTTP File Server Remote Code Execution

(CVE-2024-23692)
Early Warning
13 Days Earlier

Rejetto HTTP File Server contains an improper neutralization of special elements used in a template engine vulnerability. This allows a remote, unauthenticated attacker to execute commands on the affected system by sending a specially crafted HTTP request. This type of vulnerability, known as command injection or remote code execution, can have severe consequences, including:

  1. Unauthorized Access
  2. System Compromise
  3. Data Breach
  4. Service Disruption
  5. Spread of Malware

It is crucial to address this vulnerability immediately.

Armis identified this risk 13 days earlier for our customers:

  • CISA KEV Date: July 9, 2024
  • Armis Labs: June 26, 2024