CVE-2024-20118
CVSS 3.1 Score 6.7 of 10 (medium)
Details
Published Nov 4, 2024
CWE ID 123
Summary
CVE-2024-20118 is a vulnerability affecting the mms software that allows for a possible out-of-bounds write due to an incorrect bounds check. This issue could result in local privilege escalation with system execution privileges, making it a significant security concern. No user interaction is required for exploitation, making it a potentially dangerous threat. The patch ID for mitigation is ALPS09062392, and the internal issue identifier is MSV-1621.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share