Incorrect default permissions issue exists in Unifier and Unifier Cast. If this vulnerability is exploited, arbitrary code may be executed with LocalSystem privilege. As a result, a malicious program may be installed, data may be altered or deleted.
History

Tue, 08 Apr 2025 04:45:00 +0000

Type Values Removed Values Added
Description Incorrect default permissions issue exists in Unifier and Unifier Cast Version.5.0 or later, and the patch "20240527" not applied. If this vulnerability is exploited, arbitrary code may be executed with LocalSystem privilege. As a result, a malicious program may be installed, data may be modified or deleted. Incorrect default permissions issue exists in Unifier and Unifier Cast. If this vulnerability is exploited, arbitrary code may be executed with LocalSystem privilege. As a result, a malicious program may be installed, data may be altered or deleted.
References
Metrics cvssV3_0

{'score': 7.8, 'vector': 'CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: jpcert

Published:

Updated: 2025-04-08T04:36:31.500Z

Reserved: 2024-01-23T07:00:54.325Z

Link: CVE-2024-23847

cve-icon Vulnrichment

Updated: 2024-08-01T23:13:08.240Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-05-31T06:15:10.070

Modified: 2025-04-08T05:15:37.357

Link: CVE-2024-23847

cve-icon Redhat

No data.