cbcvebase.
CVE-2024-8306
published 2024-09-11

CVE-2024-8306: CWE-269: Improper Privilege Management vulnerability exists that could cause unauthorized access, loss of confidentiality, integrity and availability of the…

PriorityP343high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.21%
11.1th percentile
CWE-269: Improper Privilege Management vulnerability exists that could cause unauthorized access, loss of confidentiality, integrity and availability of the workstation when non-admin authenticated user tries to perform privilege escalation by tampering with the binaries.

Affected

4 ranges
VendorProductVersion rangeFixed in
schneider-electricvijeo_designer< 6.36.3
schneider-electricvijeo_designer
schneider_electricvijeo_designer
schneider_electricvijeo_designer_embedded_in_ecostruxure_machine_expert
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.