CVE-2024-36482

CVSS 3.1 Score 8.2 of 10 (high)

Details

Published Nov 13, 2024
Updated: Nov 15, 2024
CWE ID 20

Summary

CVE-2024-36482 is a vulnerability affecting some Intel(R) CIP software versions prior to 2.4.10852. This issue arises due to inadequate input validation, allowing a privileged user to potentially escalate their privileges through local access. By exploiting this weakness, an attacker could gain elevated permissions and gain unauthorized access to sensitive information or make unintended modifications. This vulnerability poses a significant risk, particularly in enterprise environments, and should be addressed promptly by updating to the latest software version.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share