CVE-2024-11679
CVE-2024-11679: Input validation vulnerability in legacy System x servers. This flaw allows a local attacker with elevated privileges to read sensitive memory contents. The TpmSetup module is affected by this weakness, which could lead to information disclosure.
While the CVSS score is 4.4, indicating moderate severity, the SOCRadar Vulnerability Risk Score (SVRS) is 46. This highlights that while not critical, the vulnerability still presents a significant risk. Successful exploitation allows unauthorized access to memory, potentially exposing confidential data. Prompt patching is recommended to mitigate the risk. This CVE is significant because it affects server hardware, often containing highly sensitive information and could be exploited by malicious insiders with elevated privileges or by malware already present on the system. The vulnerability resides in the input validation process itself.
Indicators of Compromise
Exploits
News
Social Media
Affected Software
References
CWE Details
CVE Radar
Real-time CVE Intelligence & Vulnerability Management Platform
CVE Radar provides comprehensive vulnerability intelligence by monitoring CVE databases, security advisories, and threat feeds. Get instant updates on new vulnerabilities, exploit details, and mitigation strategies specific to your assets.