CVE-2024-52869

CVSS 3.1 Score 6 of 10 (medium)

Details

Published Jan 8, 2025
Updated: Jan 31, 2025
CWE ID 281

Summary

CVE-2024-52869 is a vulnerability affecting Teradata account handling code up to November 4, 2024, used with SUSE Enterprise Linux Server. When migrating from SLES 12 SP2 or 3 to SLES 15 SP2 on Teradata Database systems, certain service/system user accounts and possibly administrator-created user accounts are erroneously assigned to groups granting elevated system-level privileges. This misconfiguration may result in full system compromise, depending on the usage of these accounts.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share