CVE-2024-41139

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
29/07/2024
Last modified:
04/06/2025

Description

Incorrect privilege assignment vulnerability exists in SKYSEA Client View Ver.6.010.06 to Ver.19.210.04e. If a user who can log in to the PC where the product's Windows client is installed places a specially crafted DLL file in a specific folder, arbitrary code may be executed with SYSTEM privilege.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:skygroup:skysea_client_view:*:*:*:*:*:*:*:* 6.010.06 (including) 19.300.09h (excluding)