Description
The MSI installer for Splashtop Streamer for Windows before 3.6.2.0 uses a temporary folder with weak permissions during installation. A local user can exploit this to escalate privileges to SYSTEM by replacing InstRegExp.reg.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-39419 | The MSI installer for Splashtop Streamer for Windows before 3.6.2.0 uses a temporary folder with weak permissions during installation. A local user can exploit this to escalate privileges to SYSTEM by replacing InstRegExp.reg. |
References
History
Wed, 25 Feb 2026 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:splashtop:streamer:*:*:*:*:*:windows:*:* | |
| Metrics |
ssvc
|
Wed, 03 Sep 2025 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Splashtop
Splashtop streamer |
|
| CPEs | cpe:2.3:a:splashtop:streamer:*:*:*:*:-:windows:*:* | |
| Vendors & Products |
Splashtop
Splashtop streamer |
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-02T04:54:31.342Z
Reserved: 2024-07-28T00:00:00.000Z
Link: CVE-2024-42051
Updated: 2024-08-02T04:54:31.342Z
Status : Analyzed
Published: 2024-07-28T03:15:02.033
Modified: 2025-09-03T19:46:37.640
Link: CVE-2024-42051
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD