Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-21805


Improper access control vulnerability exists in the specific folder of SKYSEA Client View versions from Ver.16.100 prior to Ver.19.2. If this vulnerability is exploited, an arbitrary file may be placed in the specific folder by a user who can log in to the PC where the product's Windows client is installed. In case the file is a specially crafted DLL file, arbitrary code may be executed with SYSTEM privilege.


Published

2024-03-12T08:15:45.277

Last Modified

2025-05-23T14:44:30.497

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 7.8 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-284

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application skygroup skysea_client_view < 19.300.09h Yes

References