CVE-2024-36071

Samsung Magician 8.0.0 on Windows allows an admin to escalate privileges by tampering with the directory and DLL files used during the installation process. This occurs because of an Untrusted Search Path.
Configurations

No configuration.

History

21 Nov 2024, 09:21

Type Values Removed Values Added
References () https://semiconductor.samsung.com/support/quality-support/product-security-updates/ - () https://semiconductor.samsung.com/support/quality-support/product-security-updates/ -

03 Jul 2024, 02:02

Type Values Removed Values Added
CWE CWE-426

21 Jun 2024, 11:22

Type Values Removed Values Added
Summary
  • (es) Samsung Magician 8.0.0 en Windows permite a un administrador escalar privilegios alterando el directorio y los archivos DLL utilizados durante el proceso de instalación. Esto ocurre debido a una ruta de búsqueda que no es de confianza.

20 Jun 2024, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-06-20 21:15

Updated : 2024-11-21 09:21


NVD link : CVE-2024-36071

Mitre link : CVE-2024-36071

CVE.ORG link : CVE-2024-36071


JSON object : View

Products Affected

No product.

CWE
CWE-426

Untrusted Search Path