CVE-2024-23764
CVSS 3.1 Score 6.7 of 10 (medium)
Details
Summary
CVE-2024-23764 is a newly disclosed vulnerability affecting multiple WithSecure products, including Client Security 15 and later, Server Security 15 and later, Email and Server Security 15 and later, and Elements Endpoint Protection 17 and later. This issue grants attackers local privilege escalation, enabling them to gain higher levels of access than their current permissions. By exploiting this vulnerability, attackers can potentially compromise the entire system, installing unauthorized software, stealing sensitive data, or causing damage. Users are advised to update their WithSecure products to the latest versions as soon as possible to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- WithSecure