S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
critical·Product Based Web Vulnerabilities·Updated Jul 22, 2024

CVE-2024-37393 Scanner

CVE-2024-37393 scanner - LDAP Injection vulnerability in SecurEnvoy Two Factor Authentication

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsdomain, ipv4, subdomain
CostFree
2.9k
Times Used
continuous scan runs
4.7k
Continuously Checked
assets under CS
1
Vulnerabilities Found
confirmed findings
References
CVECVE-2024-37393
7.5
CVSScritical
Exploitable remotely over the internet · no authentication required.

Multiple LDAP injections vulnerabilities exist in SecurEnvoy MFA before 9.4.514 due to improper validation of user-supplied input. An unauthenticated remote attacker could exfiltrate data from Active Directory through blind LDAP injection attacks against the DESKTOP service exposed on the /secserver HTTP endpoint. This may include ms-Mcs-AdmPwd, which has a cleartext password for the Local Administrator Password Solution (LAPS) feature.

Attack Vector
Network
Privileges Req.
None
User Interaction
None
Affected
n/aby n/a
n/a
mfaby securenvoy
AFFECTED< 9.4.514SAFE ✓≥ 9.4.514
Updated Aug 22, 2026View on NVD →
Detail

SecurEnvoy Two Factor Authentication is used by organizations to add an additional layer of security to their login processes. It integrates with Active Directory to provide multi-factor authentication for users. Administrators deploy it to secure remote access and sensitive systems. It is commonly used in enterprises, educational institutions, and government agencies. The software helps prevent unauthorized access by requiring a second form of authentication.

The vulnerability involves multiple LDAP injection flaws due to improper validation of user input. An unauthenticated remote attacker can perform blind LDAP injection attacks against the DESKTOP service. This allows for exfiltration of sensitive data from Active Directory. The issue exists in versions before 9.4.514.

The vulnerability exists in the SecurEnvoy Two Factor Authentication software's DESKTOP service endpoint, specifically at the /secserver HTTP endpoint. It occurs because user-supplied input is not properly validated. An attacker can manipulate LDAP queries to retrieve sensitive information. For instance, they can exploit the vulnerability to access the ms-Mcs-AdmPwd attribute, which contains cleartext passwords for LAPS. This allows for significant information disclosure and potential compromise of the Active Directory.

Exploitation of this vulnerability can lead to unauthorized access to sensitive information stored in Active Directory. Attackers could retrieve cleartext passwords, which might be used for further network compromise. It can lead to the complete breach of systems relying on Active Directory for authentication. Additionally, it might allow attackers to perform privilege escalation within the network.

S4E provides a comprehensive Cyber Threat Exposure Management service that helps you identify and remediate vulnerabilities in your digital assets. By using our platform, you gain access to detailed vulnerability reports and expert guidance on securing your systems. Protect your organization from potential breaches and ensure compliance with security standards. Join us today and enhance your cybersecurity posture with our advanced scanning and reporting capabilities.

References:

Solution Advice
  • Upgrade SecurEnvoy Two Factor Authentication to version 9.4.514 or later.
  • Implement proper input validation and sanitization to prevent LDAP injection attacks.
  • Restrict access to sensitive endpoints and enforce strong authentication mechanisms.
  • Regularly review and monitor security logs for suspicious activities.
  • Conduct periodic security assessments to identify and mitigate vulnerabilities promptly.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.