CVE-2024-46916
PoC —CVSS 3.1
8.1 high
EPSS
<1%p30
Published
()
Modified
Description
Diebold Nixdorf Vynamic Security Suite through 4.3.0 SR06 contains functionality that allows the removal of critical system files before the filesystem is properly mounted (e.g., leveraging a delete call in /etc/rc.d/init.d/mountfs to remove the /etc/fstab file). This can allow code execution and, in some versions, enable recovery of TPM Disk Encryption keys and decryption of the Windows system partition.
- Vendors
- dieboldnixdorf
- Products
- vynamic security suite
- Weakness
- CWE-269, CWE-276, CWE-284
- Vector
- CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.