← Back

CVE-2024-4229

nvd nist
Published: Dec 19, 2024Modified: Dec 19, 2024

JSON object

Loading...
7.8
Vector
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H
Exploitability: 1.1 / Impact: 6.0
Source: Mitsubishielectric.Psirt@yd.MitsubishiElectric.co.jp (Secondary)

Description

Incorrect Default Permissions vulnerability in Edgecross Basic Software for Windows versions 1.00 and later and Edgecross Basic Software for Developers versions 1.00 and later allows a malicious local attacker to execute an arbitrary malicious code, resulting in information disclosure, tampering with and deletion, or a denial-of-service (DoS) condition, if the product is installed in a folder other than a folder that only users with administrative privilege have permission to modify.

References (2)

Source: Mitsubishielectric.Psirt@yd.MitsubishiElectric.co.jp

Timeline

No history available yet.