CVE-2024-50804

Severity CVSS v4.0:
Pending analysis
Type:
CWE-94 Code Injection
Publication date:
18/11/2024
Last modified:
19/11/2024

Description

Insecure Permissions vulnerability in Micro-star International MSI Center Pro 2.1.37.0 allows a local attacker to execute arbitrary code via the Device_DeviceID.dat.bak file within the C:\ProgramData\MSI\One Dragon Center\Data folder