CVE-2024-6654
Denial of Service vulnerability in ESET products for macOS
Severity Score
6.8
*CVSS v4
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
Track
*SSVC
Descriptions
Products for macOS enables a user logged on to the system to perform a denial-of-service attack, which could be misused to disable the protection of the ESET security product and cause general system slow-down.
Los productos para macOS permiten que un usuario conectado al sistema realice un ataque de denegación de servicio, que podría usarse indebidamente para deshabilitar la protección del producto de seguridad de ESET y provocar una ralentización general del sistema.
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Attack Requirements
Privileges Required
User Interaction
System
Vulnerable | Subsequent
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:Track
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2024-07-10 CVE Reserved
- 2024-09-27 CVE Published
- 2024-09-28 EPSS Updated
- 2024-10-09 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-377: Insecure Temporary File
CAPEC
- CAPEC-132: Symlink Attack
References (2)
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
ESET, Spol. S R.o. Search vendor "ESET, Spol. S R.o." | ESET Cyber Security Search vendor "ESET, Spol. S R.o." for product "ESET Cyber Security" | < 7.5.74.0 Search vendor "ESET, Spol. S R.o." for product "ESET Cyber Security" and version " < 7.5.74.0" | en |
Affected
| ||||||
ESET, Spol. S R.o. Search vendor "ESET, Spol. S R.o." | ESET Endpoint Security For MacOS Search vendor "ESET, Spol. S R.o." for product "ESET Endpoint Security For MacOS" | < 8.0.7200.0 Search vendor "ESET, Spol. S R.o." for product "ESET Endpoint Security For MacOS" and version " < 8.0.7200.0" | en |
Affected
|