CVE-2024-44000

Insufficiently Protected Credentials vulnerability in LiteSpeed Technologies LiteSpeed Cache litespeed-cache allows Authentication Bypass.This issue affects LiteSpeed Cache: from n/a through < 6.5.0.1.

  • Published Oct 20, 2024
  • CVSS 9.8 critical
  • 82.3% chance of exploitation in the next 30 days (EPSS)
  • A Metasploit module exploits it

Affected software

In the news

CVE-2024-44000 at the National Vulnerability Database