CVE-2024-58250

CVSS 3.1 Score 9.3 of 10 (high)

Details

Published Apr 22, 2025
Updated: Apr 23, 2025
CWE ID 426

Summary

CVE-2024-58250 is a newly identified vulnerability affecting the passprompt plugin in pppd versions prior to 2.5.2. This issue permits privilege escalation, allowing attackers to elevate their access levels and potentially gain unauthorized control over the affected system. The mishandling of privileges in the passprompt plugin creates this security vulnerability. Systems running these vulnerable versions of pppd are at risk and should be promptly updated to mitigate this issue.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share