Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-39708

Опубликовано: 28 июн. 2024
Источник: nvd
CVSS3: 7
EPSS Низкий

Описание

An issue was discovered in the Agent in Delinea Privilege Manager (formerly Thycotic Privilege Manager) before 12.0.1096 on Windows. Sometimes, a non-administrator user can copy a crafted DLL file to a temporary directory (used by .NET Shadow Copies) such that privilege escalation can occur if the core agent service loads that file.

EPSS

Процентиль: 12%
0.00041
Низкий

7 High

CVSS3

Дефекты

CWE-427

Связанные уязвимости

CVSS3: 7
github
больше 1 года назад

An issue was discovered in the Agent in Delinea Privilege Manager (formerly Thycotic Privilege Manager) before 12.0.1096 on Windows. Sometimes, a non-administrator user can copy a crafted DLL file to a temporary directory (used by .NET Shadow Copies) such that privilege escalation can occur if the core agent service loads that file.

EPSS

Процентиль: 12%
0.00041
Низкий

7 High

CVSS3

Дефекты

CWE-427