CVE-2024-55062: Easyvirt CO2SCOPE
Critical severity, CVSS 9.8. EPSS: 1.1% chance of exploitation in the next 30 days.
Code Injection vulnerability in EasyVirt DCScope <= 8.6.0 and CO2Scope <= 1.3.0 allows remote unauthenticated attackers to execute arbitrary code to /api/license/sendlicense/.
Affected products
Published 2025-01-31. Last modified 2026-06-17.