PT-2024-6836 · Microsoft · Visual C++ Redistributable Installer

Sandro Poppi

·

Published

2024-10-08

·

Updated

2025-04-14

·

CVE-2024-43590

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Visual C++ Redistributable Installer (affected versions not specified)
Description The issue is related to insufficient access restrictions in the Visual C++ Redistributable Installer, which is part of the Microsoft Visual Studio development environment. Exploitation of this issue may allow an attacker to elevate their privileges.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Access Control

Improper Privilege Management

Weakness Enumeration

Related Identifiers

BDU:2024-08056
CVE-2024-43590

Affected Products

Visual C++ Redistributable Installer