Skip to content

Commit

Permalink
Update DIVD-2024-00051.md
Browse files Browse the repository at this point in the history
Updated case file: DIVD-2024-00051
  • Loading branch information
flor1der authored Dec 9, 2024
1 parent 2bc916a commit 2597ddc
Showing 1 changed file with 1 addition and 1 deletion.
2 changes: 1 addition & 1 deletion _cases/2024/DIVD-2024-00051.md
Original file line number Diff line number Diff line change
Expand Up @@ -36,7 +36,7 @@ A critical vulnerability in ProjectSend, a widely-used open-source file-sharing

## Recommendations

To remediate {% cve CVE-2024-11680 %}, upgrade to version r1720 or later.
To remediate {% cve CVE-2024-11680 %}, upgrade ProjectSend to version r1720 or later to resolve the improper authorisation vulnerability. Limit public access by applying strict network controls and review server logs for unusual activity, especially targeting `options.php` or unauthorised uploads in `upload/files/`. For any compromised systems, remove malicious files, restore original configurations, and investigate further for signs of exploitation. Establish a patch management process to ensure timely updates and minimise exposure to future vulnerabilities

## What we are doing

Expand Down

0 comments on commit 2597ddc

Please sign in to comment.