CVE-2024-36284

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published Nov 13, 2024
Updated: Nov 15, 2024
CWE ID 20

Summary

CVE-2024-36284 is a vulnerability affecting some versions of Intel(R) Neural Compressor software. The issue arises from insufficient input validation, allowing authenticated users to potentially gain privilege escalation through adjacent access. By exploiting this flaw, attackers could elevate their access levels and gain unauthorized control beyond their intended scope. This vulnerability poses a risk to system security and should be addressed promptly by updating to the latest software version.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share