CVE-2023-24592

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Nov 14, 2023
Updated: Nov 28, 2023
CWE ID 22

Summary

CVE-2023-24592 is a newly disclosed vulnerability affecting some Intel(R) oneAPI Toolkits and Component software versions preceding 2023.1. This issue involves a path traversal weakness, which can potentially enable authenticated users to escalate privileges through local access. By manipulating file paths, an attacker could gain unintended access to sensitive data or execute malicious code with elevated permissions. This vulnerability poses a significant risk to systems running the affected software and requires immediate attention for patching or mitigation.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share