An unquoted service path vulnerability in the 12d Synergy Server and File Replication Server components may allow an attacker to gain elevated privileges via the 12d Synergy Server and/or 12d Synergy File Replication Server executable service path. This is fixed in 4.3.10.192, 5.1.5.221, and 5.1.6.235.
References
Link | Resource |
---|---|
https://files.12dsynergy.com/downloads/download.aspx | Product |
https://help.12dsynergy.com/v1/docs/cve-2024-24722 | Vendor Advisory |
https://www.12dsynergy.com/security-statement/ | Product |
https://files.12dsynergy.com/downloads/download.aspx | Product |
https://help.12dsynergy.com/v1/docs/cve-2024-24722 | Vendor Advisory |
https://www.12dsynergy.com/security-statement/ | Product |
Configurations
Configuration 1 (hide)
|
History
02 Apr 2025, 20:07
Type | Values Removed | Values Added |
---|---|---|
References | () https://files.12dsynergy.com/downloads/download.aspx - Product | |
References | () https://help.12dsynergy.com/v1/docs/cve-2024-24722 - Vendor Advisory | |
References | () https://www.12dsynergy.com/security-statement/ - Product | |
CPE | cpe:2.3:a:12dsynergy:12dsynergy:*:*:*:*:*:*:*:* cpe:2.3:a:12dsynergy:file_replication_server:*:*:*:*:*:*:*:* |
|
First Time |
12dsynergy 12dsynergy
12dsynergy 12dsynergy file Replication Server |
25 Mar 2025, 16:15
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-428 | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.1 |
Information
Published : 2024-02-19 06:15
Updated : 2025-04-02 20:07
NVD link : CVE-2024-24722
Mitre link : CVE-2024-24722
CVE.ORG link : CVE-2024-24722
JSON object : View
Products Affected
12dsynergy
- 12dsynergy
- file_replication_server
CWE
CWE-428
Unquoted Search Path or Element