CVE-2024-2003Improper Privilege Management in Spol S R.O Eset Endpoint Antivirus FOR Windows

Severity
7.3HIGHNVD
EPSS
0.1%
top 75.46%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJun 21

Description

Local privilege escalation vulnerability allowed an attacker to misuse ESET's file operations during a restore operation from quarantine.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:HExploitability: 1.3 | Impact: 5.9

Affected Packages13 packages

🔴Vulnerability Details

2
CVEList
Local Privilege Escalation in Quarantine of ESET products for Windows2024-06-21
GHSA
GHSA-jxcm-cf67-2rxc: Local privilege escalation vulnerability allowed an attacker to misuse ESET's file operations during a restore operation from quarantine2024-06-21

💬Community

1
Bugzilla
CVE-2023-25775 kernel: irdma: Improper access control2023-08-11
CVE-2024-2003 — Improper Privilege Management | cvebase