CVE-2024-24279

HIGH

secdiskapp 1.5.1 - Privilege Escalation via vsVerifyPassword and vsSetFingerPrintPower

Title source: llm
STIX 2.1

Description

An issue in secdiskapp 1.5.1 (management program for NewQ Fingerprint Encryption Super Speed Flash Disk) allows attackers to gain escalated privileges via vsVerifyPassword and vsSetFingerPrintPower functions.

References (1)

Core 1

Scores

CVSS v3 8.8
EPSS 0.0015
EPSS Percentile 4.3%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-261 CWE-287
Status published
Products (1)
secdiskapp/secdiskapp 1.5.1
Published Apr 08, 2024
Tracked Since Feb 18, 2026