VulnerabilityModified
CVE-2024-23764
Certain WithSecure products allow Local Privilege Escalation.
MEDIUM 6.7EPSS 0.17%
Does this matter?
Lower severity and a low EPSS score (0.17%). Track it; it rarely justifies an emergency change on its own.
Description
Certain WithSecure products allow Local Privilege Escalation. This affects WithSecure Client Security 15 and later, WithSecure Server Security 15 and later, WithSecure Email and Server Security 15 and later, and WithSecure Elements Endpoint Protection 17 and later.
- CVSS 3.1
- 6.7 MEDIUMCVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
- EPSS
- 0.17% probability · 7th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-269
- Affected
- withsecure/client security · withsecure/server security · withsecure/email and server security · withsecure/elements endpoint protection
- Source
- cve@mitre.org
References
- https://www.withsecure.com/en/support/security-advisoriesProduct
- https://www.withsecure.com/en/support/security-advisories/cve-2024-23764Vendor Advisory
- https://www.withsecure.com/en/support/security-advisoriesProduct
- https://www.withsecure.com/en/support/security-advisories/cve-2024-23764Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.