CVE-2024-1618
Last modified
CVE-2024-1618 is a high-severity vulnerability rated 7.8/10 on the CVSS scale. A search path or unquoted item vulnerability in Faronics Deep Freeze Server Standard, which affects versions 8.30.020.4627 and earlier. This vulnerability affects the DFServ.exe file. An attacker with local user privileges could exploit this vulnerability to replace the legitimate DFServ.exe service executable with a malicious file of the same name and located in a directory that has a higher priority than the legitimate directory. Thus, when the service starts, it will run the malicious file instead of the legitimate executable, allowing the attacker to execute arbitrary code, gain unauthorized access to the compromised system or stop the service from running.. EPSS estimates a 0.24% chance of exploitation in the next 30 days.
Description
A search path or unquoted item vulnerability in Faronics Deep Freeze Server Standard, which affects versions 8.30.020.4627 and earlier. This vulnerability affects the DFServ.exe file. An attacker with local user privileges could exploit this vulnerability to replace the legitimate DFServ.exe service executable with a malicious file of the same name and located in a directory that has a higher priority than the legitimate directory. Thus, when the service starts, it will run the malicious file instead of the legitimate executable, allowing the attacker to execute arbitrary code, gain unauthorized access to the compromised system or stop the service from running.
Metrics
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2024-1618?
How severe is CVE-2024-1618?
How do I fix CVE-2024-1618?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2024
- CVE-2024-1604Improper authorization in the report management and creation…6.8
- CVE-2024-1605BMC Control-M branches 9.0.20 and 9.0.21 upon user login lo…7.8
- CVE-2024-1606Lack of input sanitization in BMC Control-M branches 9.0.20…5.4
- CVE-2024-1608In OPPO Usercenter Credit SDK, there's a possible escalation…7.5
- CVE-2024-1609In OPPOStore iOS App, there's a possible escalation of privi…8.7
- CVE-2024-1610In OPPO Store APP, there's a possible escalation of privileg…9.8
- CVE-2024-1619Kaspersky has fixed a security issue in the Kaspersky Securi…8.8
- CVE-2024-1621The registration process of uniFLOW Online (NT-ware product)…7.5
- CVE-2024-1622Due to a mistake in error checking, Routinator will terminat…7.5
- CVE-2024-1623Insufficient session timeout vulnerability in the FAST3686 V…7.8
- CVE-2024-1624An OS Command Injection vulnerability affecting documentatio…9.4
- CVE-2024-1625An Insecure Direct Object Reference (IDOR) vulnerability exi…6.5
Are you affected by CVE-2024-1618?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
