CVE-2024-57727 KEV
7.5
HIGH · CVSS 3.1 · EPSS 96.6% (pctl 100)
Patch first
On CISA KEV — known exploited in the wild, due 2025-03-06.
Description
SimpleHelp remote support software v5.5.7 and before is vulnerable to multiple path traversal vulnerabilities that enable unauthenticated remote attackers to download arbitrary files from the SimpleHelp host via crafted HTTP requests. These files include server configuration files containing various secrets and hashed user passwords.
Scoring
| CVSS | 7.5 (HIGH, v3.1) |
|---|---|
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N |
| EPSS | 96.58% — more likely to be exploited than 100% of all CVEs |
| Weakness | CWE-22 |
| On CISA KEV | yes — remediate by 2025-03-06 |
| Public exploit | none known |
| Published | 2025-01-15 |
| Last modified | 2026-08-04 |
CISA KEV
| Name | SimpleHelp Path Traversal Vulnerability |
|---|---|
| Added | 2025-02-13 |
| Due | 2025-03-06 |
| Vendor / product | SimpleHelp / SimpleHelp |
| Ransomware use | known |
Affected (1)
| Vendor | Product |
|---|---|
| simple-help | simplehelp |
References
- https://simple-help.com/kb---security-vulnerabilities-01-2025#security-vulnerabilities-in-simplehelp-5-5-7-and-earlier
- https://www.horizon3.ai/attack-research/disclosures/critical-vulnerabilities-in-simplehelp-remote-support-software/
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2024-57727
→ the Explorer · watch your stack · NVD