CVE-2024-48394

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Feb 5, 2025
Updated: Feb 6, 2025
CWE ID 367

Summary

CVE-2024-48394 is a newly discovered Time-of-Check to Time-of-Use (TOCTOU) vulnerability affecting the driver of NDD Print solution. This issue allows unprivileged users to exploit the flaw and obtain SYSTEM-level access on devices running the NDD Print software version 5.24.3 and below. The TOCTOU vulnerability occurs when the system performs a check at one point in time but uses the data at a different point in time, leading to potential security risks. Users are advised to update their software as soon as a patch becomes available to mitigate this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share