CVE-2024-44744

CVSS 3.1 Score 5.7 of 10 (medium)

Details

Published Oct 1, 2024
Updated: Oct 4, 2024
CWE ID 94

Summary

CVE-2024-44744 is a vulnerability affecting Malwarebytes Premium Security version 5.0.0.883. This issue permits attackers to execute arbitrary code by inserting crafted binaries into unspecified directories. Although Malwarebytes asserts that this exploit necessitates admin privileges, and the contents cannot be modified by non-admin users, the potential for malicious activity is significant. Malwarebytes is urged to release a patch as soon as possible to mitigate this risk. Users are advised to exercise caution and avoid opening untrusted files or downloads.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share