CVE-2024-7061

MEDIUM

Okta Verify for Windows < 5.0.2 - Privilege Escalation via DLL Hijacking

Title source: llm
STIX 2.1

Description

Okta Verify for Windows is vulnerable to privilege escalation through DLL hijacking. The vulnerability is fixed in Okta Verify for Windows version 5.0.2. To remediate this vulnerability, upgrade to 5.0.2 or greater.

Scores

CVSS v3 5.5
EPSS 0.0021
EPSS Percentile 11.7%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-22 CWE-427
Status published
Products (1)
okta/verify < 5.0.2
Published Aug 07, 2024
Tracked Since Feb 18, 2026