PT-2024-6400 · Eset · Eset

Dmitry Zuzlov

·

Published

2024-08-01

·

Updated

2024-10-23

·

CVE-2024-7400

CVSS v4.0

8.5

High

VectorAV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions ESET versions prior to the fixed version
Description The issue is related to insufficient access control in ESET's antivirus protection, potentially allowing an attacker to misuse file operations during the removal of a detected file on the Windows operating system to delete files without proper permissions. This can be used to obtain elevated privileges. The vulnerability affects 13 ESET solutions and can be exploited by a low-privileged attacker to delete arbitrary files.
Recommendations As a temporary workaround, consider restricting access to the file operations handling during the removal of detected files until a patch is available. Update to the latest version of ESET to fix the vulnerability. Restrict access to the vulnerable file operations to minimize the risk of exploitation.

Fix

Insecure Operation on Windows Junction

Weakness Enumeration

Related Identifiers

BDU:2024-07485
CVE-2024-7400

Affected Products

Eset