PT-2025-2206 · Obsproject · Obs Studio
Fergod
·
Published
2025-01-20
·
Updated
2025-01-20
·
CVE-2024-13524
CVSS v2.0
3.5
Low
| Vector | AV:L/AC:H/Au:S/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
obsproject OBS Studio versions up to 30.0.2
Description
A vulnerability has been found in obsproject OBS Studio, affecting an unknown functionality. The manipulation leads to an untrusted search path. The attack needs to be approached locally and has a rather high complexity, making exploitation difficult. The vendor disagrees that this issue is worth reporting, as every attack surface requires privileged access or user compromise.
Recommendations
To fix this issue, it is recommended to apply a patch for versions up to 30.0.2.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Untrusted Search Path
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Obs Studio