CVE-2024-41143

Origin validation error vulnerability exists in SKYSEA Client View Ver.3.013.00 to Ver.19.210.04e. If this vulnerability is exploited, an arbitrary process may be executed with SYSTEM privilege by a user who can log in to the PC where the product's Windows client is installed.
References
Link Resource
https://jvn.jp/en/jp/JVN84326763/ Third Party Advisory
https://www.skyseaclientview.net/news/240729_02/ Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:skygroup:skysea_client_view:*:*:*:*:*:*:*:*

History

12 Sep 2024, 21:27

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.8
First Time Skygroup skysea Client View
Skygroup
References () https://jvn.jp/en/jp/JVN84326763/ - () https://jvn.jp/en/jp/JVN84326763/ - Third Party Advisory
References () https://www.skyseaclientview.net/news/240729_02/ - () https://www.skyseaclientview.net/news/240729_02/ - Vendor Advisory
CWE CWE-346
CPE cpe:2.3:a:skygroup:skysea_client_view:*:*:*:*:*:*:*:*

29 Jul 2024, 14:12

Type Values Removed Values Added
Summary
  • (es) Existe una vulnerabilidad de error de validación de origen en SKYSEA Client View Ver.3.013.00 a Ver.19.210.04e. Si se explota esta vulnerabilidad, un usuario que pueda iniciar sesión en el PC donde está instalado el cliente Windows del producto puede ejecutar un proceso arbitrario con privilegios de SYSTEM.

29 Jul 2024, 09:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-07-29 09:15

Updated : 2024-09-12 21:27


NVD link : CVE-2024-41143

Mitre link : CVE-2024-41143

CVE.ORG link : CVE-2024-41143


JSON object : View

Products Affected

skygroup

  • skysea_client_view
CWE
CWE-346

Origin Validation Error