CVE-2024-35245
CVSS 3.1 Score 6.7 of 10 (medium)
Details
Summary
CVE-2024-35245 is a newly disclosed vulnerability affecting some Intel(R) PROSet/Wireless WiFi software for Windows before version 23.60. This issue involves an uncontrolled search path element, which could potentially enable an authenticated user to escalate their privileges via local access. By manipulating the search path, an attacker may gain elevated access to the system, increasing the risk of data theft or unauthorized system modification. This vulnerability underscores the importance of keeping software up-to-date to mitigate potential security risks. Intel has released a patch to address this issue and users are encouraged to install it as soon as possible.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.