CVE-2024-0353: Local privilege escalation in Windows products
Published Feb 15, 2024
·Updated
Local privilege escalation vulnerability potentially allowed an attacker to misuse ESET’s file operations to delete files without having proper permission.
Affected Software
33 affected components
ESET ESET
ESET Endpoint Antivirus Windows<8.1.2062.0
ESET Endpoint Antivirus Windows>=9.0<9.1.2071.0
ESET Endpoint Antivirus Windows>=10.0<10.0.2052.0
ESET Endpoint Antivirus Windows>=10.1<10.1.2063.0
ESET Endpoint Antivirus Windows>=11.0<11.0.2032.0
ESET Endpoint Security Windows<8.1.2062.0
ESET Endpoint Security Windows>=9.0<9.1.2071.0
ESET Endpoint Security Windows>=10.0<10.0.2052.0
ESET Endpoint Security Windows>=10.1<10.1.2063.0
ESET Endpoint Security Windows>=11.0<11.0.2032.0
ESET File Security Azure
ESET Internet Security<17.0.10.0
ESET Mail Security Exchange Server<7.3.10018.0
ESET Mail Security Domino<7.3.14006.0
ESET Mail Security Exchange Server>=8.0<8.0.10024.0
ESET Mail Security Domino>=8.0<8.0.14014.0
ESET Mail Security Exchange Server>=9.0<9.0.10012.0
ESET Mail Security Domino>=9.0<9.0.14008.0
ESET Mail Security Exchange Server>=10.0<10.0.10018.0
ESET Mail Security Domino>=10.0<10.0.14007.0
ESET Mail Security Exchange Server>=10.1<10.1.10014.0
ESET NOD32 Antivirus<17.0.10.0
ESET Security Sharepoint Server<7.3.15006.0
ESET security<17.0.10.0
ESET Security Sharepoint Server>=8.0<8.0.15012.0
ESET Security Sharepoint Server>=9.0<9.0.15006.0
ESET Security Sharepoint Server>=10.0<10.0.15005.0
ESET Server Security Windows Server<7.3.12013.0
ESET Server Security Windows Server>=8.0<8.0.12016.0
ESET Server Security Windows Server>=9.0<9.0.12019.0
ESET Server Security Windows Server>=10.0<10.0.12015.0
ESET Smart Security<17.0.10.0
Event History
Feb 15, 2024
CVE Published
via MITRE·07:40 AM
Data Sourced
via MITRE·07:40 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·08:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-0353?
CVE-2024-0353 is classified as a local privilege escalation vulnerability.
2
How do I fix CVE-2024-0353?
To fix CVE-2024-0353, ensure that you update your ESET software to the latest version provided by ESET.
3
What products are affected by CVE-2024-0353?
CVE-2024-0353 affects several ESET products including ESET Endpoint Antivirus, ESET Internet Security, and ESET File Security.
4
Can CVE-2024-0353 allow unauthorized file deletions?
Yes, CVE-2024-0353 may allow an attacker to misuse file operations to delete files without the appropriate permissions.
5
Is there a public advisory for CVE-2024-0353?
Yes, ESET has issued a customer advisory regarding CVE-2024-0353 that details the vulnerability and recommended actions.