PT-2024-8100 · Microsoft · Visual Studio Code Remote Extension

Aleksandar Straumann

+1

·

Published

2024-11-12

·

Updated

2025-08-21

·

CVE-2024-49049

CVSS v3.1

7.1

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions: Visual Studio Code Remote Extension (affected versions not specified)
Description: The issue is related to insufficient access control in the Visual Studio Code Remote Extension. Exploitation of this issue may allow an attacker to elevate their privileges.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Access Control

Weakness Enumeration

Related Identifiers

BDU:2024-09621
CVE-2024-49049

Affected Products

Visual Studio Code Remote Extension