CVE-2024-13090

A privilege escalation vulnerability may enable a service account to elevate its privileges. The sudo rules configured for a local service account were excessively permissive, potentially allowing administrative access if a malicious actor could execute arbitrary commands as that account. It is important to note that no such vector has been identified in this instance.
Configurations

No configuration.

History

12 Jun 2025, 16:06

Type Values Removed Values Added
Summary
  • (es) Una vulnerabilidad de escalada de privilegios podría permitir que una cuenta de servicio eleve sus privilegios. Las reglas de sudo configuradas para una cuenta de servicio local eran excesivamente permisivas, lo que podría permitir acceso administrativo si un agente malicioso pudiera ejecutar comandos arbitrarios desde esa cuenta. Es importante destacar que no se ha identificado tal vector en este caso.

10 Jun 2025, 11:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-06-10 11:15

Updated : 2025-06-12 16:06


NVD link : CVE-2024-13090

Mitre link : CVE-2024-13090

CVE.ORG link : CVE-2024-13090


JSON object : View

Products Affected

No product.

CWE
CWE-250

Execution with Unnecessary Privileges