Vulnerability in Absolute Persistence® Affects Device Security
CVE-2024-6364
6.9MEDIUM
What is CVE-2024-6364?
A vulnerability exists in Absolute Persistence® when it is not activated, which may enable an attacker with physical access and hostile network control to execute operating system commands on the device. To secure your system, it is essential to update the firmware to the latest version. For upgrade instructions, approach the device manufacturer or contact Absolute Security.
Affected Version(s)
Absolute Persistence 0 < 2.8
References
CVSS V4
Score:
6.9
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
None
Attack Vector:
Physical
Attack Complexity:
High
Attack Required:
Physical
Privileges Required:
Undefined
User Interaction:
None
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Denis Faiustov, GMO Cybersecurity by Ierae