ctipilot.chSwitzerland · Europe · Public sector

SimpleHelp RMM — missing authorisation privilege escalation (CVSS 9.9, ITW DragonForce/Medusa, KEV deadline 2026-05-08)

cve · CVE-2024-57726

Coverage timeline
1
first 2026-05-07 → last 2026-05-07
Briefs
1
1 distinct
Sources cited
6
4 hosts
Sections touched
1
active_vulns
Co-occurring entities
0
no co-occurrence

Story timeline

  1. 2026-05-07CTI Daily Brief — 2026-05-07
    active_vulnsFirst coverage. Low-privileged user escalates to server admin; chained with CVE-2024-57728 by DragonForce and Medusa ransomware targeting MSPs; CISA KEV deadline 2026-05-08 (overdue).

Where this entity is cited

  • active_vulns1

Source distribution

  • nvd.nist.gov3 (50%)
  • helpnetsecurity.com1 (17%)
  • securityboulevard.com1 (17%)
  • windowsforum.com1 (17%)

Items in briefs about SimpleHelp RMM — missing authorisation privilege escalation (CVSS 9.9, ITW DragonForce/Medusa, KEV deadline 2026-05-08)

No parsed item heading or body matches this entity yet. Items match by exact CVE id (for CVE entities), by lead-segment substring of the title in the item heading or body, or by a distinctive anchor token from the title appearing in the item heading. Coverage that lives inside a broader section (no per-item heading) is captured by the Story timeline above.