CVE-2024-52783

Insecure permissions in the XNetSocketClient component of XINJE XDPPro.exe v3.2.2 to v3.7.17c allows attackers to execute arbitrary code via modification of the configuration file.
Configurations

No configuration.

History

03 Feb 2025, 17:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.1
CWE CWE-276
Summary
  • (es) Los permisos inseguros en el componente XNetSocketClient de XINJE XDPPro.exe v3.2.2 a v3.7.17c permiten a los atacantes ejecutar código arbitrario mediante la modificación del archivo de configuración.

15 Jan 2025, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-01-15 17:15

Updated : 2025-02-03 17:15


NVD link : CVE-2024-52783

Mitre link : CVE-2024-52783

CVE.ORG link : CVE-2024-52783


JSON object : View

Products Affected

No product.

CWE
CWE-276

Incorrect Default Permissions