DLL hijacking vulnerabilities, caused by an uncontrolled search path in Configuration Wizard 2 installer can lead to privilege escalation and arbitrary code execution when running the impacted installer.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://community.silabs.com/068Vm00000JUQwd |
|
History
Fri, 24 Jan 2025 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | DLL hijacking vulnerabilities, caused by an uncontrolled search path in Configuration Wizard 2 installer can lead to privilege escalation and arbitrary code execution when running the impacted installer. | |
| Title | Uncontrolled search path can lead to DLL hijacking in Configuration Wizard 2 installer | |
| Weaknesses | CWE-427 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Silabs
Published: 2025-01-24T14:26:55.677Z
Updated: 2025-02-12T20:01:20.529Z
Reserved: 2024-10-03T18:21:38.374Z
Link: CVE-2024-9491
No data.
Status : Received
Published: 2025-01-24T15:15:10.817
Modified: 2025-01-24T15:15:10.817
Link: CVE-2024-9491
No data.