Metrics
Affected Vendors & Products
Solution
The vulnerability has been fixed in Block Load version 4.2, available for download on the Carrier eDesign Program Downloads website.
Workaround
No workaround given by the vendor.
Tue, 04 Mar 2025 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 04 Mar 2025 17:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | An Uncontrolled Search Path Element vulnerability exists which could allow a malicious actor to perform DLL hijacking and execute arbitrary code with escalated privileges. | |
Title | Carrier Block Load Privilege Escalation | |
Weaknesses | CWE-427 | |
References |
| |
Metrics |
cvssV4_0
|

Status: PUBLISHED
Assigner: Carrier
Published:
Updated: 2025-03-04T18:32:38.413Z
Reserved: 2024-11-06T16:56:42.600Z
Link: CVE-2024-10930

Updated: 2025-03-04T18:32:29.925Z

Status : Received
Published: 2025-03-04T18:15:23.610
Modified: 2025-03-04T18:15:23.610
Link: CVE-2024-10930

No data.

No data.