CVE-2024-9537: ScienceLogic SL1 Unspecified Vulnerability
Critical severity, CVSS 9.8. Actively exploited: in CISA KEV since 2024-10-21. EPSS: 3.8% chance of exploitation in the next 30 days.
ScienceLogic SL1 (formerly EM7) is affected by an unspecified vulnerability involving an unspecified third-party component packaged with SL1. The vulnerability is addressed in SL1 versions 12.1.3+, 12.2.3+, and 12.3+. Remediations have been made available for all SL1 versions back to version lines 10.1.x, 10.2.x, 11.1.x, 11.2.x, and 11.3.x.
Affected products
- ScienceLogic SL1: from 10.1.0, before 12.1.3 (fixed in 12.1.3); from 12.2.0, before 12.2.3 (fixed in 12.2.3)
Published 2024-10-18. Last modified 2026-06-17.