CVE-2024-1155
Emerson
CVE-2024-1155 is a privilege escalation vulnerability affecting SystemLink Elixir based services. Incorrect permissions in installation directories could allow a local, authenticated user to gain elevated privileges. The CVSS score is 7.8, indicating a high severity.
While the CVSS score is high, the SOCRadar Vulnerability Risk Score (SVRS) is 30, suggesting that despite the potential impact, it is not currently considered a critical threat requiring immediate action. The vulnerability, categorized as CWE-276, stems from improper default permissions. Successful exploitation requires local access, limiting its potential blast radius. However, organizations should still investigate and remediate this vulnerability to prevent potential local privilege escalation. Failing to address this issue could allow malicious users with initial access to gain full control over the affected system.
Indicators of Compromise
Exploits
News
Social Media
Affected Software
References
CWE Details
CVE Radar
Real-time CVE Intelligence & Vulnerability Management Platform
CVE Radar provides comprehensive vulnerability intelligence by monitoring CVE databases, security advisories, and threat feeds. Get instant updates on new vulnerabilities, exploit details, and mitigation strategies specific to your assets.