PT-2025-2206 · Obsproject · Obs Studio

Fergod

·

Published

2025-01-20

·

Updated

2025-01-20

·

CVE-2024-13524

CVSS v2.0

3.5

Low

VectorAV:L/AC:H/Au:S/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions obsproject OBS Studio versions up to 30.0.2
Description A vulnerability has been found in obsproject OBS Studio, affecting an unknown functionality. The manipulation leads to an untrusted search path. The attack needs to be approached locally and has a rather high complexity, making exploitation difficult. The vendor disagrees that this issue is worth reporting, as every attack surface requires privileged access or user compromise.
Recommendations To fix this issue, it is recommended to apply a patch for versions up to 30.0.2. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Untrusted Search Path

Weakness Enumeration

Related Identifiers

CVE-2024-13524

Affected Products

Obs Studio