CVE-2024-36291

CVSS 3.1 Score 6.7 of 10 (medium)

Details

Published Feb 12, 2025
CWE ID 427

Summary

CVE-2024-36291 is a vulnerability affecting some Intel Chipset Software Installation Utilities before version 10.1.19867.8574. This issue permits an authenticated user, through local access, to potentially escalate privileges due to uncontrolled search paths. The flaw could allow malicious actors to gain elevated access to affected systems, leading to potential security compromises. Users are strongly advised to update their software to the latest version to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share