CVE-2024-4229 Information
Dec 20, 2024
cve
Description
Incorrect Default Permissions vulnerability in Edgecross Basic Software for Windows versions 1.00 and later and Edgecross Basic Software for Developers versions 1.00 and later allows a malicious local attacker to execute an arbitrary malicious code resulting in information disclosure tampering with and deletion or a denial-of-service (DoS) condition if the product is installed in a folder other than a folder that only users with administrative privilege have permission to modify.
Reference
https://jvn.jp/vu/JVNVU92857077/index.html https://www.edgecross.org/client_info/EDGECROSS/view/userweb/ext/en/data-download/pdf/ECD-TE10-0003-01-EN.pdf
Share on: