Privilege Escalation Risk in AMD Ryzen Master Monitoring SDK
CVE-2024-21945

7.3HIGH

Key Information:

Vendor
Amd
Status
Ryzen Master Monitoring Software Development Kit
Vendor
CVE Published:
12 November 2024

Summary

An improper configuration of default permissions found in the installation directory of the AMD Ryzen Master Monitoring SDK poses a vulnerability where unauthorized users could execute privileged actions. This vulnerability could enable an attacker to escalate privileges, potentially resulting in execution of arbitrary code, which may compromise the system's security. It is critical for users and administrators to review the permission settings and apply necessary updates to mitigate potential security risks.

References

CVSS V3.1

Score:
7.3
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

Collectors

NVD Database
.