We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2024-6913

Execution with Unnecessary Privileges



AssignerCyberDanube
Reserved2024-07-19
Published2024-07-22
Updated2024-08-01

Description

Execution with unnecessary privileges in PerkinElmer ProcessPlus allows an attacker to spawn a remote shell on the windows system.This issue affects ProcessPlus: through 1.11.6507.0.



CRITICAL: 9.3CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

Problem types

CWE-250 Execution with Unnecessary Privileges

Product status

Default status
unaffected

Any version
affected

Credits

S. Dietz (CyberDanube) 0x40069166d0

T. Weber (CyberDanube) 0x40069166e0

References

https://cyberdanube.com/en/en-multiple-vulnerabilities-in-perten-processplus/

http://seclists.org/fulldisclosure/2024/Jul/13

cve.org CVE-2024-6913

nvd.nist.gov CVE-2024-6913

Download JSON

Share this page
https://cve.threatint.com
Subscribe to our newsletter to learn more about our work.