CVE-2024-9494: Uncontrolled search path can lead to DLL hijacking in CP210 VCP Win 2k installer
DLL hijacking vulnerabilities, caused by an uncontrolled search path in the
CP210 VCP Win 2k
installer can lead to privilege escalation and arbitrary code execution when running the impacted installer.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-9494?
CVE-2024-9494 is classified as a high severity vulnerability due to the potential for privilege escalation and arbitrary code execution.
How do I fix CVE-2024-9494?
To fix CVE-2024-9494, ensure you update to the latest version of the Silicon Labs CP210 VCP Win 2k installer that addresses this vulnerability.
What are the potential impacts of CVE-2024-9494?
The potential impacts of CVE-2024-9494 include unauthorized access to system privileges and execution of malicious code.
Who is affected by CVE-2024-9494?
Users of the Silicon Labs CP210 VCP Win 2k installer are affected by CVE-2024-9494 if they have not implemented mitigation against DLL hijacking.
How can I verify if my system is at risk from CVE-2024-9494?
You can verify if your system is at risk from CVE-2024-9494 by checking the version of the Silicon Labs CP210 VCP Win 2k installer currently installed.