CVE-2024-36586
HIGHCVSS 8.8/10EPSS 0.21%
Last modified
CVE-2024-36586 is a high-severity vulnerability rated 8.8/10 on the CVSS scale. An issue in AdGuardHome v0.93 to latest allows unprivileged attackers to escalate privileges via overwriting the AdGuardHome binary.. EPSS estimates a 0.21% chance of exploitation in the next 30 days.
Description
An issue in AdGuardHome v0.93 to latest allows unprivileged attackers to escalate privileges via overwriting the AdGuardHome binary.
Metrics
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2024-36586?
An issue in AdGuardHome v0.93 to latest allows unprivileged attackers to escalate privileges via overwriting the AdGuardHome binary.
How severe is CVE-2024-36586?
CVE-2024-36586 has a CVSS score of 8.8/10 (HIGH severity). The EPSS model estimates a 0.21% probability of exploitation in the next 30 days.
How do I fix CVE-2024-36586?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2024
- CVE-2024-36578akbr update 1.0.0 is vulnerable to Prototype Pollution via u…5.9
- CVE-2024-3658Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMB…
- CVE-2024-36580A Prototype Pollution issue in cdr0 sg 1.0.10 allows an atta…9.8
- CVE-2024-36581A Prototype Pollution issue in abw badger-database 1.2.1 all…7.6
- CVE-2024-36582alexbinary object-deep-assign 1.0.11 is vulnerable to Protot…9.8
- CVE-2024-36583A Prototype Pollution issue in byondreal accessor <= 1.0.0 a…8.1
- CVE-2024-36587Insecure permissions in DNSCrypt-proxy v2.0.0alpha9 to v2.1.…7.8
- CVE-2024-36588An issue in Annonshop.app DecentralizeJustice/ anonymousLock…6.5
- CVE-2024-36589An issue in Annonshop.app DecentralizeJustice/anonymousLocke…4.3
- CVE-2024-3659Firmware in KAON AR2140 routers, prior to versions 3.2.50 an…7.2
- CVE-2024-36597Aegon Life v1.0 was discovered to contain a SQL injection vu…8.8
- CVE-2024-36598An arbitrary file upload vulnerability in Aegon Life v1.0 al…8.1
Are you affected by CVE-2024-36586?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
