CVE-2024-35288
EUVD-2024-3526209.10.2024, 04:15
Nitro PDF Pro before 13.70.8.82 and 14.x before 14.26.1.0 allows Local Privilege Escalation in the MSI Installer because custom actions occur unsafely in repair mode. CertUtil is run in a conhost.exe window, and there is a mechanism allowing CTRL+o to launch cmd.exe as NT AUTHORITY\SYSTEM.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| gonitro | nitro_pdf_pro | 𝑥 < 13.70.8.82 | ADP |
| gonitro | nitro_pdf_pro | 14.0 ≤ 𝑥 < 14.26.1.0 | ADP |