← back
CVE-2024-36071

CVE-2024-36071

CVSS 6.3 MEDIUMEPSS 0.1%CWE-426
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 6.3EPSS 0.1%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
20 Jun 2024Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Samsung Magician 8.0.0 on Windows allows an admin to escalate privileges by tampering with the directory and DLL files used during the installation process. This occurs because of an Untrusted Search Path.
CVSS:3.1/AC:H/AV:L/A:H/C:H/I:H/PR:H/S:U/UI:R
Affected products
n/a · n/a

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →