ZDI-24-898: ESET Smart Security Premium Link Following Local Privilege Escalation Vulnerability
This vulnerability allows local attackers to escalate privileges on affected installations of ESET Smart Security Premium. User interaction on the part of an administrator is required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.3. The following CVEs are assigned: CVE-2024-2003.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-24-898?
ZDI-24-898 has a CVSS rating of 7.3, indicating a high-severity vulnerability.
How do I fix ZDI-24-898?
To fix ZDI-24-898, update your ESET Smart Security Premium to the latest version provided by ESET.
Who is affected by ZDI-24-898?
ZDI-24-898 affects installations of ESET Smart Security Premium, specifically local users with administrative privileges.
What type of attack does ZDI-24-898 involve?
ZDI-24-898 involves local privilege escalation requiring user interaction from an administrator to be exploited.
Is user interaction required for ZDI-24-898 to be exploited?
Yes, user interaction on the part of an administrator is required to exploit ZDI-24-898.