CVE Feed

    Dashboard / CVE / CVE-2024-38456

    CVE-2024-38456

    HIGH-LEIT V05.08.01.03 and HIGH-LEIT V04.25.00.00 to 4.25.01.01 for Windows from Vivavis contain an insecure file and folder permissions vulnerability in prunsrv.exe. A regular user (non-admin) can exploit the weak folder and file permissions to escalate privileges and execute arbitrary code in the context of NT AUTHORITY\SYSTEM.

    Published:Sep 3, 2024
    Last Modified:Apr 15, 2026
    EPS:Sep 3, 2024
    EPSS Score:0.00084
    CVSS Score:7.8

    Affected Products

    Vendor
    Vivavis
    Product
    High-leit

    Exploits

    No exploit reference

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High