By default, dedicated folders of ZONECENTRAL for Windows up to 2024.3 or up to Q.2021.2 (ANSSI qualification submission) can be accessed by other users to misuse technical files and make them perform tasks with higher privileges. Configuration of ZONECENTRAL has to be modified to prevent this vulnerability.
                
            Metrics
Affected Vendors & Products
References
        History
                    Mon, 25 Nov 2024 20:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Weaknesses | CWE-276 | |
| Metrics | cvssV3_1 
 
 | 
Fri, 15 Nov 2024 17:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | By default, dedicated folders of ZONECENTRAL for Windows up to 2024.3 or up to Q.2021.2 (ANSSI qualification submission) can be accessed by other users to misuse technical files and make them perform tasks with higher privileges. Configuration of ZONECENTRAL has to be modified to prevent this vulnerability. | |
| References |  | 
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: mitre
Published: 2024-11-15T00:00:00
Updated: 2024-11-25T20:01:58.685Z
Reserved: 2024-09-11T00:00:00
Link: CVE-2024-46466
 Vulnrichment
                        Vulnrichment
                    Updated: 2024-11-25T20:01:50.369Z
 NVD
                        NVD
                    Status : Awaiting Analysis
Published: 2024-11-15T18:15:28.297
Modified: 2024-11-25T20:15:08.957
Link: CVE-2024-46466
 Redhat
                        Redhat
                    No data.