By default, dedicated folders of ZONECENTRAL for Windows up to 2024.3 or up to Q.2021.2 (ANSSI qualification submission) can be accessed by other users to misuse technical files and make them perform tasks with higher privileges. Configuration of ZONECENTRAL has to be modified to prevent this vulnerability.
Metrics
Affected Vendors & Products
References
History
Mon, 25 Nov 2024 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-276 | |
| Metrics |
cvssV3_1
|
Fri, 15 Nov 2024 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | By default, dedicated folders of ZONECENTRAL for Windows up to 2024.3 or up to Q.2021.2 (ANSSI qualification submission) can be accessed by other users to misuse technical files and make them perform tasks with higher privileges. Configuration of ZONECENTRAL has to be modified to prevent this vulnerability. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published: 2024-11-15T00:00:00
Updated: 2024-11-25T20:01:58.685Z
Reserved: 2024-09-11T00:00:00
Link: CVE-2024-46466
Updated: 2024-11-25T20:01:50.369Z
Status : Awaiting Analysis
Published: 2024-11-15T18:15:28.297
Modified: 2024-11-25T20:15:08.957
Link: CVE-2024-46466
No data.