CVE-2024-4461
EUVD-2024-4407703.05.2024, 11:15
Unquoted path or search item vulnerability in SugarSync versions prior to 4.1.3 for Windows. This misconfiguration could allow an unauthorized local user to inject arbitrary code into the unquoted service path, resulting in privilege escalation.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| sugarsync | sugarsync | 𝑥 < 4.1.3 | ADP |
Common Weakness Enumeration