CVE Published: 12/11/2024 |
CVE Updated: 13/11/2024 |
CVE Year: 2024 Source: AMD |
Vendor: AMD |
Product: AMD Cloud Manageability Service Software Status : PUBLISHED
CVE-2024-21939 Description
Incorrect default permissions in the AMD Cloud Manageability Service (ACMS) Software installation directory could allow an attacker to achieve privilege escalation potentially resulting in arbitrary code execution.
Metrics
CVSS Version: 3.1 |
Base Score: 7.3 HIGH Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H