Missing authorization vulnerability exists in Unifier and Unifier Cast Version.5.0 or later, and the patch "20240527" not applied. If this vulnerability is exploited, arbitrary code may be executed with LocalSystem privilege. As a result, a malicious program may be installed, data may be modified or deleted.
Metrics
Affected Vendors & Products
References
History
Thu, 15 Aug 2024 18:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-862 | |
Metrics |
cvssV3_1
|
MITRE
Status: PUBLISHED
Assigner: jpcert
Published: 2024-05-31T06:11:22.238Z
Updated: 2024-08-15T16:40:23.675Z
Reserved: 2024-05-22T04:37:30.990Z
Link: CVE-2024-36246
Vulnrichment
Updated: 2024-08-02T03:37:05.247Z
NVD
Status : Awaiting Analysis
Published: 2024-05-31T06:15:12.407
Modified: 2024-08-15T17:35:07.080
Link: CVE-2024-36246
Redhat
No data.