ctipilot.chSwitzerland · Europe · Public sector

SimpleHelp RMM — path traversal / zip-slip code execution (CVSS 7.2, ITW, KEV deadline 2026-05-08)

cve · CVE-2024-57728

Story timeline

  1. 2026-05-07CTI Daily Brief — 2026-05-07
    active_vulnsFirst coverage. Chained with CVE-2024-57726 to achieve code execution on SimpleHelp server via crafted zip upload; CISA KEV deadline 2026-05-08 (overdue).