CVE-2024-35245

CVSS 3.1 Score 6.7 of 10 (medium)

Details

Published Nov 13, 2024
Updated: Nov 15, 2024
CWE ID 427

Summary

CVE-2024-35245 is a newly disclosed vulnerability affecting some Intel(R) PROSet/Wireless WiFi software for Windows before version 23.60. This issue involves an uncontrolled search path element, which could potentially enable an authenticated user to escalate their privileges via local access. By manipulating the search path, an attacker may gain elevated access to the system, increasing the risk of data theft or unauthorized system modification. This vulnerability underscores the importance of keeping software up-to-date to mitigate potential security risks. Intel has released a patch to address this issue and users are encouraged to install it as soon as possible.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share