CVE-2024-7834
04.09.2024, 13:15
A local privilege escalation is caused by Overwolf loading and executing certain dynamic link library files from a user-writeable folder in SYSTEM context on launch. This allows an attacker with unprivileged access to the system to run arbitrary code with SYSTEM privileges by placing a malicious .dll file in the respective location.Enginsight
Vendor | Product | Version |
---|---|---|
overwolf | overwolf | 𝑥 < 250.1.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References