PT-2024-24198 · Terabyte Unlimited · Image For Windows

Published

2024-05-21

·

Updated

2024-08-29

·

CVE-2024-31757

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions TeraByte Unlimited Image for Windows versions 3.64.0.0 and earlier
Description An issue in the software allows a local attacker to escalate privileges via the TBOFLHelper64.sys and TBOFLHelper.sys component. This enables the attacker to gain elevated access to the system.
Recommendations For versions 3.64.0.0 and earlier, update to version 4.0.0.0 or later to resolve the issue. As a temporary workaround, consider disabling the TBOFLHelper64.sys and TBOFLHelper.sys components until a patch is applied.

Fix

Improper Privilege Management

Weakness Enumeration

Related Identifiers

CVE-2024-31757

Affected Products

Image For Windows