https://ift.tt/prcPCqG How To Prepare For Your Virtual Doctor Visit To Get The Most From Your Consultation
https://ift.tt/prcPCqG How To Prepare For Your Virtual Doctor Visit To Get The Most From Your Consultation
- Get link
- X
- Other Apps
A critical local privilege escalation vulnerability has been discovered in MSI Center versions 2.0.36.0 and earlier, allowing low-privileged users to escalate their privileges on Windows systems.
This security flaw, tracked as CVE-2024-37726, stems from insecure file operations performed by the MSI Center application running with NT AUTHORITY\SYSTEM privileges.
"Is Your System Under Attack? Try Cynet XDR: Automated Detection & Response for Endpoints, Networks, & Users!"- Free Demo
The vulnerability can be exploited through the following steps:
Security researcher carsonchan12345 said that manipulating this process can allow an attacker to overwrite or delete critical system files, leading to a full system compromise.
The impact of this vulnerability is significant:
MSI has addressed this vulnerability in version 2.0.38.0 of MSI Center, released on July 3, 2024. Users are strongly advised to update to this latest version to mitigate the risk.
This incident highlights the importance of proper file system access controls and the potential dangers of applications running with elevated privileges.
Organizations and individual users should prioritize updating affected systems and conduct thorough security audits to identify and address similar vulnerabilities.
To verify if your MSI Center version is affected by this vulnerability, you should check the version number of your installed MSI Center application. The vulnerability affects MSI Center versions 2.0.36.0 and earlier. Here are the steps to check your version:
If your MSI Center version is 2.0.36.0 or earlier, your system is potentially vulnerable. The vulnerability has been fixed in version 2.0.38.0, released on July 3, 2024. To ensure your system’s security:
Are you from SOC/DFIR Teams? - Sign up for a free ANY.RUN account! to Analyse Advanced Malware Files
The post MSI Installer Vulnerability Let Attackers Escalate Privileges with Windows Systems appeared first on Cyber Security News.
https://ift.tt/r7LIgy8
Comments
Post a Comment
Commenter vous !