CVE-2024-50804

Insecure Permissions vulnerability in Micro-star International MSI Center Pro 2.1.37.0 allows a local attacker to execute arbitrary code via the Device_DeviceID.dat.bak file within the C:\ProgramData\MSI\One Dragon Center\Data folder
Configurations

No configuration.

History

19 Nov 2024, 16:35

Type Values Removed Values Added
Summary
  • (es) La vulnerabilidad de permisos inseguros en Micro-star International MSI Center Pro 2.1.37.0 permite a un atacante local ejecutar código arbitrario a través del archivo Device_DeviceID.dat.bak dentro de la carpeta C:\ProgramData\MSI\One Dragon Center\Data
CWE CWE-94
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.8

18 Nov 2024, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-11-18 21:15

Updated : 2024-11-19 21:57


NVD link : CVE-2024-50804

Mitre link : CVE-2024-50804

CVE.ORG link : CVE-2024-50804


JSON object : View

Products Affected

No product.

CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')