cve/2024/CVE-2024-24912.md

18 lines
943 B
Markdown
Raw Permalink Normal View History

2024-05-25 21:48:12 +02:00
### [CVE-2024-24912](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-24912)
![](https://img.shields.io/static/v1?label=Product&message=Harmony%20Endpoint%20Security%20Client%20for%20Windows&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=%3D%20Harmony%20Endpoint%20Security%20Client%20for%20Windows%20versions%20E88.10%20and%20below%20&color=brighgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-732%3A%20Incorrect%20Permission%20Assignment%20for%20Critical%20Resource&color=brighgreen)
### Description
A local privilege escalation vulnerability has been identified in Harmony Endpoint Security Client for Windows versions E88.10 and below. To exploit this vulnerability, an attacker must first obtain the ability to execute local privileged code on the target system.
### POC
#### Reference
No PoCs from references.
#### Github
- https://github.com/fkie-cad/nvd-json-data-feeds