CVE-2024-4229
CVE-2024-4229
Vexday Risk Score
21Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS 7.8EPSS 0.2%KEV nãoPoC —Nuclei —Metasploit —Patch referenciado
Ciclo de vida
19 dic 2024Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
Incorrect Default Permissions vulnerability in Edgecross Basic Software for Windows versions 1.00 and later and Edgecross Basic Software for Developers versions 1.00 and later allows a malicious local attacker to execute an arbitrary malicious code, resulting in information disclosure, tampering with and deletion, or a denial-of-service (DoS) condition, if the product is installed in a folder other than a folder that only users with administrative privilege have permission to modify.
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H
Productos afectados
Edgecross Consortium · Edgecross Basic Software for DevelopersEdgecross Consortium · Edgecross Basic Software for Windows¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →