CVE-2024-37024
CVSS 3.1 Score 6.7 of 10 (medium)
Details
Published Nov 13, 2024
Updated: Nov 15, 2024
CWE ID 427
Summary
CVE-2024-37024 is a vulnerability affecting some versions of Intel(R) ACAT software for Windows prior to 3.11.0. This issue involves uncontrolled search paths, which can potentially allow authenticated users to escalate their privileges through local access. By manipulating the software's search path, an attacker may gain elevated access to system resources, compromising the security of the affected system. It is essential that users update their Intel(R) ACAT software to the latest version to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.