CVE-2024-26314
HIGHDescription
Improper privilege management in Jungo WinDriver 6.0.0 through 16.1.0 allows local attackers to escalate privileges and execute arbitrary code.
Is your site exposed to CVE-2024-26314?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| jungo | windriver |
| mitsubishielectric | cpu_module_logging_configuration_tool |
| mitsubishielectric | cw_configurator |
| mitsubishielectric | data_transfer |
| mitsubishielectric | data_transfer_classic |
| mitsubishielectric | ezsocket |
| mitsubishielectric | fr_configurator_sw3 |
| mitsubishielectric | fr_configurator2 |
| mitsubishielectric | genesis64 |
| mitsubishielectric | gt_got1000 |
| mitsubishielectric | gt_got2000 |
| mitsubishielectric | gt_softgot1000 |
| mitsubishielectric | gt_softgot2000 |
| mitsubishielectric | gx_developer |
| mitsubishielectric | gx_logviewer |
| mitsubishielectric | gx_works2 |
| mitsubishielectric | gx_works3 |
| mitsubishielectric | iq_works |
| mitsubishielectric | mi_configurator |
| mitsubishielectric | mr_configurator |
| mitsubishielectric | mr_configurator2 |
| mitsubishielectric | mx_component |
| mitsubishielectric | mx_opc_server_da\/ua |
| mitsubishielectric | numerical_control_device_communication |
| mitsubishielectric | px_developer\/monitor_tool |
| mitsubishielectric | rt_toolbox3 |
| mitsubishielectric | rt_visualbox |
| mitsubishielectric | mrzjw3-mc2-utl_firmware |
| mitsubishielectric | mrzjw3-mc2-utl |
| mitsubishielectric | sw0dnc-mneth-b_firmware |
| mitsubishielectric | sw0dnc-mneth-b |
| mitsubishielectric | sw1dnc-ccbd2-b_firmware |
| mitsubishielectric | sw1dnc-ccbd2-b |
| mitsubishielectric | sw1dnc-ccief-j_firmware |
| mitsubishielectric | sw1dnc-ccief-j |
| mitsubishielectric | sw1dnc-ccief-b_firmware |
| mitsubishielectric | sw1dnc-ccief-b |
| mitsubishielectric | sw1dnc-mnetg-b_firmware |
| mitsubishielectric | sw1dnc-mnetg-b |
| mitsubishielectric | sw1dnc-qsccf-b_firmware |
| mitsubishielectric | sw1dnc-qsccf-b |
| mitsubishielectric | sw1dnd-emsdk-b_firmware |
| mitsubishielectric | sw1dnd-emsdk-b |
References
Other References
Frequently Asked Questions
What is CVE-2024-26314? +
How severe is CVE-2024-26314? +
What products are affected by CVE-2024-26314? +
How do I check if I'm vulnerable to CVE-2024-26314? +
Related Vulnerabilities
A security vulnerability has been identified in Acer Care Center where the ACCSvc service creates a Named Pipe with a …
NitroSense 3.x before 3.01.3052 contains Local Privilege Escalation (LPE) vulnerability.The program exposes a Windows Named Pipe that uses a custom …
Local privilege escalation potentially allowed an attacker to write an arbitrary file with fully controlled content as a privileged user.
Improper Privilege Management (CWE-269) in `/usr/bin/ltsudo` in Loytec LIP-ME201C, L-INX, L-GATE, L-ROC, L-IOB, L-DALI, L-VIS and L-PAD through 8.4.16 on …
PredatorSense version 3.00.3136 to 3.00.3196 contain Local Privilege Escalation (LPE) vulnerability.The program exposes a Windows Named Pipe that uses a …
A privilege escalation vulnerability in Palo Alto Networks Cortex® XDR Broker VM enables a locally authenticated user to perform actions …