CVE-2024-0197
HIGHThales SafeNet Sentinel HASP LDK < 9.16 - Privilege Escalation via Installer
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2024-0197. PoCs published by ewilded.
AI-analyzed exploit summary This repository contains a functional proof-of-concept for CVE-2024-0197, a local privilege escalation vulnerability in Thales Sentinel HASP LDK. The exploit leverages DLL search order hijacking by placing a proxy DLL (fltlib.dll) in a known location, which is then loaded by msiexec.exe to achieve SYSTEM privileges.
Description
A flaw in the installer for Thales SafeNet Sentinel HASP LDK prior to 9.16 on Windows allows an attacker to escalate their privilege level via local access.
Exploits (1)
This repository contains a functional proof-of-concept for CVE-2024-0197, a local privilege escalation vulnerability in Thales Sentinel HASP LDK. The exploit leverages DLL search order hijacking by placing a proxy DLL (fltlib.dll) in a known location, which is then loaded by msiexec.exe to achieve SYSTEM privileges.
References (1)
Scores
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H