Incorrect default permissions in the AMD Management Console installation directory could allow an attacker to achieve privilege escalation potentially resulting in arbitrary code execution.
History

Thu, 14 Nov 2024 17:15:00 +0000

Type Values Removed Values Added
First Time appeared Amd
Amd management Console
CPEs cpe:2.3:a:amd:management_console:*:*:*:*:*:*:*:*
Vendors & Products Amd
Amd management Console
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 12 Nov 2024 17:30:00 +0000

Type Values Removed Values Added
Description Incorrect default permissions in the AMD Management Console installation directory could allow an attacker to achieve privilege escalation potentially resulting in arbitrary code execution.
Weaknesses CWE-276
References
Metrics cvssV3_1

{'score': 7.3, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: AMD

Published: 2024-11-12T17:16:13.632Z

Updated: 2024-11-14T16:19:51.948Z

Reserved: 2024-01-03T16:43:26.977Z

Link: CVE-2024-21957

cve-icon Vulnrichment

Updated: 2024-11-14T16:19:47.580Z

cve-icon NVD

Status : Analyzed

Published: 2024-11-12T18:15:19.050

Modified: 2024-12-18T18:58:19.103

Link: CVE-2024-21957

cve-icon Redhat

No data.