CVE-2024-9499

DLL hijacking vulnerabilities, caused by an uncontrolled search path in the USBXpress Win 98SE Dev Kit installer can lead to privilege escalation and arbitrary code execution when running the impacted installer.
Configurations

No configuration.

History

18 Feb 2025, 21:15

Type Values Removed Values Added
Summary
  • (es) Las vulnerabilidades de secuestro de DLL, causadas por un uncontrolled search path en el instalador USBXpress Win 98SE Dev Kit, pueden provocar una escalada de privilegios y la ejecución de código arbitrario al ejecutar el instalador afectado.

24 Jan 2025, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-01-24 15:15

Updated : 2025-02-18 21:15


NVD link : CVE-2024-9499

Mitre link : CVE-2024-9499

CVE.ORG link : CVE-2024-9499


JSON object : View

Products Affected

No product.

CWE
CWE-427

Uncontrolled Search Path Element