CVE-2024-28000
CRITICAL 9.8EPSS 68.3%
Incorrect Privilege Assignment vulnerability in LiteSpeed Technologies LiteSpeed Cache litespeed-cache allows Privilege Escalation.This issue affects LiteSpeed Cache: from 1.9 through 6.3.0.1.
- CVSS v3.1
- 9.8 CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H - CVSS v3.1
- 9.8 CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H - EPSS
- 68.27% chance of exploitation in the next 30 days, 99th percentile
- Nuclei
- critical
- Published
- 2024-08-21
- Updated
- 2026-04-29
Proof-of-concept exploits (6)
- Alucard0x1/CVE-2024-2800023★ · 2024-08-25
- JohnDoeAnonITA/CVE-2024-280005★ · 2025-03-18
- SSSSuperX/CVE-2024-280001★ · 2024-09-09
- arch1m3d/CVE-2024-280007★ · 2025-04-16
- ebrasha/CVE-2024-280005★ · 2025-11-06
- shawnng078-ops/CVE-2024-28000-Exploit-Lab