Uncontrolled Search Path Element Vulnerability in VIPRE Advanced Security by GFI Software
CVE-2024-5929
7.8HIGH
What is CVE-2024-5929?
The vulnerability within VIPRE Advanced Security's Patch Management Agent arises from the loading of a file from an unsecured location. Local attackers who already possess low-privileged access can exploit this flaw to escalate their privileges and execute arbitrary code with SYSTEM-level permissions. This can lead to unauthorized actions within the system, posing significant risks to the integrity and confidentiality of sensitive data.
