CVE-2024-10930

A

n Uncontrolled Search Path Element vulnerability exists which could allow a malicious actor to perform DLL hijacking and execute arbitrary code with escalated privileges.

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:carrier:block_load:*:*:*:*:*:*:*:*
cpe:2.3:a:carrier:block_load:4.00:*:*:*:*:*:*:*

History

05 Feb 2026, 18:42

Type Values Removed Values Added
Summary
  • (es) Existe una vulnerabilidad en el elemento de ruta de búsqueda no controlada que podría permitir que un actor malintencionado realice un secuestro de DLL y ejecute código arbitrario con privilegios aumentados.
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.8
References () https://www.cisa.gov/news-events/ics-advisories/icsa-25-063-01 - () https://www.cisa.gov/news-events/ics-advisories/icsa-25-063-01 - Third Party Advisory, US Government Resource
References () https://www.corporate.carrier.com/product-security/advisories-resources/ - () https://www.corporate.carrier.com/product-security/advisories-resources/ - Vendor Advisory
CPE cpe:2.3:a:carrier:block_load:*:*:*:*:*:*:*:*
cpe:2.3:a:carrier:block_load:4.00:*:*:*:*:*:*:*
First Time Carrier
Carrier block Load

04 Mar 2025, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-03-04 18:15

Updated : 2026-02-05 18:42


NVD link : CVE-2024-10930

Mitre link : CVE-2024-10930

CVE.ORG link : CVE-2024-10930


JSON object : View

Products Affected
CWE
CWE-427

Uncontrolled Search Path Element