← Back to advisories & guidance
September 24, 2024
CERT-EU
Advisory
Summary
This vulnerability could allow an attacker to execute arbitrary commands via crafted HTTP requests, posing a significant risk to exposed services [1,2]. Immediate updates are recommended for all affected installations. The vulnerability CVE-2024-45410 has a CVSS score of 9.8 out of 10. It allows remote code execution due to improper validation of input. The vulnerability arises from Traefik’s handling of HTTP headers which are added during request processing.
News Coverage
No coverage found in monitored research blogs or news feeds.
CVEs Referenced in This Publication
Extracted from the publication text. Each CVE links to its tracked detail page.
Vendors Named in This Publication
No KEV-catalogued vendors are named in this publication.