PT-2024-19552 · Easeus · Easeus Mobimover

Hacker625

·

Published

2024-03-07

·

Updated

2024-08-29

·

CVE-2024-22752

CVSS v3.1

8.1

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions EaseUS MobiMover version 6.0.5 Build 21620
Description The issue is related to insecure permissions in the application, allowing attackers to gain escalated privileges by using a crafted executable launched from the application installation directory.
Recommendations For EaseUS MobiMover version 6.0.5 Build 21620, consider restricting access to the application installation directory to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Improper Privilege Management

Weakness Enumeration

Related Identifiers

CVE-2024-22752

Affected Products

Easeus Mobimover