CVE-2024-0311CWE-622

A malicious insider can bypass the existing policy of Skyhigh Client Proxy without a valid release code

Medium · published March 14, 2024

CVSS v3.1
5.5
EPSS
0%
Percentile
35.3
In the wild
Unconfirmed
What it is

A malicious insider can bypass the existing policy of Skyhigh Client Proxy without a valid release code.

The record
Technical detail
CVSS v3.1
5.5 · MEDIUM
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
CVSS v4.0
Not supplied
EPSS
0.00421 · 35.3th percentile
Weakness
CWE-622 · Improper Validation of Function Hook Arguments
Published
2024-03-14T09:06Z
EPSS history
Timeline
  • 14 MAR 09:06Z
    A malicious insider can bypass the existing policy of Skyhigh Client Proxy without a valid release code
    cvelistv5