ZeroHour

CVE-2024-22042

CVSS 3.1
7.8 high
EPSS
<1%p4
Published
()
Modified
Description

A vulnerability has been identified in Unicam FX (All versions). The windows installer agent used in affected product contains incorrect use of privileged APIs that trigger the Windows Console Host (conhost.exe) as a child process with SYSTEM privileges. This could be exploited by an attacker to perform a local privilege escalation attack.

Vendors
siemens
Products
unicam fx
Weakness
CWE-648
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.