CVE-2024-11467

HIGH

Omnissa Horizon Client - Privilege Escalation

Title source: llm

Description

Omnissa Horizon Client for macOS contains a Local privilege escalation (LPE) Vulnerability due to a logic flaw. Successful exploitation of this issue may allow attackers with user privileges to escalate their privileges to root on the system where the Horizon Client for macOS is installed.

Exploits (1)

nomisec WRITEUP
by null-event · poc
https://github.com/null-event/CVE-2024-11467

Scores

CVSS v3 7.8
EPSS 0.0007
EPSS Percentile 20.6%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-269
Status published
Products (1)
Omnissa/Omnissa Horizon Client for MacOS Omnissa Horizon Client for macOS 2406 or earlier
Published Feb 04, 2025
Tracked Since Feb 18, 2026