Qlik — Sense — Qlik Sense contains an HTTP tunneling vulnerability that allows an attacker to escalate privileges and execute HTTP requests on the backend server hosting the software.
Details
EPSS Score
ⓘ
24.68%
97.7th percentile
Confidence
100%
CISA KEV
Date Added
Jan 13, 2025
Patch Due
Feb 3, 2025
Used in ransomware campaigns
Required Action
Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.