NONE · 0

CVE-2024-58288

Genexus Protection Server 9.7.2.10 contains an unquoted service path vulnerability in the protsrvservice Windows service configuration. Attackers can exploit the unquoted binary path to execute arbitr...

Vulnerability Description

Genexus Protection Server 9.7.2.10 contains an unquoted service path vulnerability in the protsrvservice Windows service configuration. Attackers can exploit the unquoted binary path to execute arbitrary code with elevated LocalSystem privileges by placing malicious executables in specific file system locations.

Related Weaknesses (CWE)

References

FAQ

What is CVE-2024-58288?

CVE-2024-58288 is a documented vulnerability. Genexus Protection Server 9.7.2.10 contains an unquoted service path vulnerability in the protsrvservice Windows service configuration. Attackers can exploit the unquoted binary path to execute arbitr...

How severe is CVE-2024-58288?

CVSS scoring is not yet available for CVE-2024-58288. Check NVD for updates.

Is there a patch for CVE-2024-58288?

Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.