CVE-2024-37782: Gladinet CentreStack

Critical severity, CVSS 9.8. EPSS: 1% chance of exploitation in the next 30 days.

An LDAP injection vulnerability in the login page of Gladinet CentreStack v13.12.9934.54690 allows attackers to access sensitive data or execute arbitrary commands via a crafted payload injected into the username field.

Affected products

  • Gladinet CentreStack: version 13.12.9934.54690 only

Published 2024-11-22. Last modified 2026-06-17.