CVE-2024-46916

Diebold Nixdorf Vynamic Security Suite through 4.3.0 SR06 contains functionality that allows the removal of critical system files before the filesystem is properly mounted (e.g., leveraging a delete call in /etc/rc.d/init.d/mountfs to remove the /etc/fstab file). This can allow code execution and, in some versions, enable recovery of TPM Disk Encryption keys and decryption of the Windows system partition.
Configurations

No configuration.

History

29 Aug 2025, 18:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.1
CWE CWE-269
CWE-284
CWE-276

29 Aug 2025, 16:24

Type Values Removed Values Added
New CVE

Information

Published : 2025-08-29 16:15

Updated : 2025-08-29 18:15


NVD link : CVE-2024-46916

Mitre link : CVE-2024-46916

CVE.ORG link : CVE-2024-46916


JSON object : View

Products Affected

No product.

CWE
CWE-269

Improper Privilege Management

CWE-276

Incorrect Default Permissions

CWE-284

Improper Access Control