ZeroHour

CVE-2024-46916

PoC
CVSS 3.1
8.1 high
EPSS
<1%p30
Published
()
Modified
Description

Diebold Nixdorf Vynamic Security Suite through 4.3.0 SR06 contains functionality that allows the removal of critical system files before the filesystem is properly mounted (e.g., leveraging a delete call in /etc/rc.d/init.d/mountfs to remove the /etc/fstab file). This can allow code execution and, in some versions, enable recovery of TPM Disk Encryption keys and decryption of the Windows system partition.

Vendors
dieboldnixdorf
Products
vynamic security suite
Weakness
CWE-269, CWE-276, CWE-284
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.