CVE-2024-23764

CVSS 3.1 Score 6.7 of 10 (medium)

Details

Published Feb 8, 2024
Updated: Feb 15, 2024
CWE ID 269

Summary

CVE-2024-23764 is a newly disclosed vulnerability affecting multiple WithSecure products, including Client Security 15 and later, Server Security 15 and later, Email and Server Security 15 and later, and Elements Endpoint Protection 17 and later. This issue grants attackers local privilege escalation, enabling them to gain higher levels of access than their current permissions. By exploiting this vulnerability, attackers can potentially compromise the entire system, installing unauthorized software, stealing sensitive data, or causing damage. Users are advised to update their WithSecure products to the latest versions as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share