Known Exploited Vulnerability: CVE-2024-57728

SimpleHelp Path Traversal Vulnerability

Catalog version: 2026.06.25 Date added: 2026-04-24 Due date: 2026-05-08 CISA catalog

Vendor: SimpleHelp

Product: SimpleHelp

Required action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

Known ransomware campaign use: Known

Notes: https://simple-help.com/kb---security-vulnerabilities-01-2025#security-vulnerabilities-in-simplehelp-5-5-7-and-earlier https://nvd.nist.gov/vuln/detail/CVE-2024-57728

CWEs

cvelogic Threat Intelligence