CVE-2024-36488

CVSS 3.1 Score 7.3 of 10 (high)

Details

Published Nov 13, 2024
Updated: Nov 15, 2024
CWE ID 284

Summary

CVE-2024-36488 is a newly identified vulnerability affecting Intel(R) Data Security Agents (DSA) prior to version 24.3.26.8. This issue involves improper access control, allowing authenticated users to potentially escalate their privileges through local access. Successful exploitation could result in elevated system permissions and potential unauthorized access to sensitive data. Intel strongly recommends updating to the latest version of the DSA to mitigate this risk. Users should also implement strict access control policies and closely monitor their systems for unauthorized activity.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share