Improper access control vulnerability exists in the specific folder of SKYSEA Client View versions from Ver.16.100 prior to Ver.19.2. If this vulnerability is exploited, an arbitrary file may be placed in the specific folder by a user who can log in to the PC where the product's Windows client is installed. In case the file is a specially crafted DLL file, arbitrary code may be executed with SYSTEM privilege.
History

Fri, 23 May 2025 15:00:00 +0000

Type Values Removed Values Added
First Time appeared Skygroup
Skygroup skysea Client View
CPEs cpe:2.3:a:skygroup:skysea_client_view:*:*:*:*:*:*:*:*
Vendors & Products Skygroup
Skygroup skysea Client View

cve-icon MITRE

Status: PUBLISHED

Assigner: jpcert

Published:

Updated: 2024-08-05T17:30:00.998Z

Reserved: 2024-02-27T08:39:46.170Z

Link: CVE-2024-21805

cve-icon Vulnrichment

Updated: 2024-08-01T22:27:36.309Z

cve-icon NVD

Status : Analyzed

Published: 2024-03-12T08:15:45.277

Modified: 2025-05-23T14:44:30.497

Link: CVE-2024-21805

cve-icon Redhat

No data.