First published: Wed Oct 09 2024(Updated: )
Nitro PDF Pro before 13.70.8.82 and 14.x before 14.26.1.0 allows Local Privilege Escalation in the MSI Installer because custom actions occur unsafely in repair mode. CertUtil is run in a conhost.exe window, and there is a mechanism allowing CTRL+o to launch cmd.exe as NT AUTHORITY\SYSTEM.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Nitro Pro | <13.70.8.82<14.26.1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-35288 has a high severity rating due to the potential for local privilege escalation.
To fix CVE-2024-35288, upgrade Nitro PDF Pro to version 13.70.8.82 or 14.26.1.0 or later.
CVE-2024-35288 affects versions of Nitro PDF Pro prior to 13.70.8.82 and 14.x before 14.26.1.0.
Exploiting CVE-2024-35288 allows attackers to execute commands with system-level privileges.
CVE-2024-35288 enables privilege escalation through unsafe custom actions during repair mode that execute commands as NT AUTHORITY\SYSTEM.