CVE-2024-2003: Local Privilege Escalation in Quarantine of ESET products for Windows
Published Jun 21, 2024
·Updated
Local privilege escalation vulnerability allowed an attacker to misuse ESET's file operations during a restore operation from quarantine.
Affected Software
1 affected component
ESET ESET products for Windows
Event History
Jun 21, 2024
CVE Published
via MITRE·07:20 AM
Data Sourced
via MITRE·07:20 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·08:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-2003?
The severity of CVE-2024-2003 is considered high due to its potential for local privilege escalation.
2
How do I fix CVE-2024-2003?
To fix CVE-2024-2003, users should update their ESET products to the latest available version provided by ESET.
3
What systems are impacted by CVE-2024-2003?
CVE-2024-2003 affects ESET products for Windows, specifically during the restore operation from quarantine.
4
Can exploiting CVE-2024-2003 allow unauthorized access?
Yes, exploiting CVE-2024-2003 can allow attackers to gain unauthorized access to higher privileges on the affected system.
5
Is there a workaround for CVE-2024-2003 if a patch is not available?
Currently, there are no known workarounds for CVE-2024-2003; updating to the latest software version is the recommended action.