← All CVEs NewScan detects
criticalKEV

CVE-2024-1709

ScreenConnect SetupWizard authentication bypass - create an administrator, then RCE

Severity
critical
Affected product
ConnectWise ScreenConnect
Affected versions
ConnectWise ScreenConnect < 23.9.8
Fixed in
ConnectWise ScreenConnect 23.9.8
CISA KEV
Listed as a known exploited vulnerability
Added to NewScan
2026-08-02
Detected by
NewScan — free, self-hosted

How NewScan reports it

APPLIANCE FINGERPRINT

NewScan fingerprints the ConnectWise ScreenConnect appliance and reports this CVE when the detected version falls inside the affected range below.

References

Scan for this yourself — local, in-band scanning is free.

Get NewScan (FREE) →