CVE-2024-24964: Medium severity skysea client view vulnerability
Improper access control vulnerability exists in the resident process of SKYSEA Client View versions from Ver.11.220 prior to Ver.19.2. If this vulnerability is exploited, an arbitrary process may be executed with SYSTEM privilege by a user who can log in to the PC where the product's Windows client is installed.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-24964?
CVE-2024-24964 has a critical severity due to the potential for arbitrary process execution with SYSTEM privileges.
How do I fix CVE-2024-24964?
To fix CVE-2024-24964, update SKYSEA Client View to version 19.2 or later, which addresses the improper access control vulnerability.
Who is affected by CVE-2024-24964?
Users of SKYSEA Client View versions from 11.220 up to, but not including, 19.2 are affected by CVE-2024-24964.
What might an attacker achieve by exploiting CVE-2024-24964?
An attacker exploiting CVE-2024-24964 could execute arbitrary processes with SYSTEM privileges on the vulnerable systems.
How can I determine if my system is vulnerable to CVE-2024-24964?
Check your version of SKYSEA Client View; if it is between 11.220 and 19.2, your system is vulnerable to CVE-2024-24964.