CVE-2024-37024

CVSS 3.1 Score 6.7 of 10 (medium)

Details

Published Nov 13, 2024
Updated: Nov 15, 2024
CWE ID 427

Summary

CVE-2024-37024 is a vulnerability affecting some versions of Intel(R) ACAT software for Windows prior to 3.11.0. This issue involves uncontrolled search paths, which can potentially allow authenticated users to escalate their privileges through local access. By manipulating the software's search path, an attacker may gain elevated access to system resources, compromising the security of the affected system. It is essential that users update their Intel(R) ACAT software to the latest version to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share