CVE-2024-36246 Information

Description

Missing authorization vulnerability exists in Unifier and Unifier Cast Version.5.0 or later and the patch \20240527\ not applied. If this vulnerability is exploited arbitrary code may be executed with LocalSystem privilege. As a result a malicious program may be installed data may be modified or deleted.

Reference

https://www.yrl.com/fwp_support/info/khvu7f00000000q7.html https://jvn.jp/en/jp/JVN17680667/

Share on: