Security Advisory

CVE-2023-29444

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-01-10 17:06:35
Last updated 2025-05-14 20:14:19
Assigner Dragos
State PUBLISHED

Description

An uncontrolled search path element vulnerability (DLL hijacking) has been discovered that could allow a locally authenticated adversary to escalate privileges to SYSTEM. Alternatively, they could host a trojanized version of the software and trick victims into downloading and installing their malicious version to gain initial access and code execution.