Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

CVE-2024-50590

7.8 · HIGH
Published Nov 8, 2024 CWE-250 EPSS 0.19% (9th pctl)

Overview

CVE-2024-50590 is a high-severity vulnerability. It was published on November 8, 2024 and has a CVSS 3.1 base score of 7.8 (HIGH).

This vulnerability has a CVSS 3.1 base score of 7.8, rated HIGH. It requires local or adjacent network access to exploit. Some level of privileges is required for exploitation.

Technical Description

Attackers with local access to the medical office computer can

escalate their Windows user privileges to "NT AUTHORITY\SYSTEM" by

overwriting one of two Elefant service binaries with weak permissions. The default installation directory of Elefant is "C:\Elefant1" which is

writable for all users. In addition, the Elefant installer registers two

Firebird database services which are running as “NT AUTHORITY\SYSTEM”. 

Path: C:\Elefant1\Firebird_2\bin\fbserver.exe

Path: C:\Elefant1\Firebird_2\bin\fbguard.exe

Both service binaries are user writable. This means that a local

attacker can rename one of the service binaries, replace the service

executable with a new executable, and then restart the system. Once the

system has rebooted, the new service binary is executed as "NT

AUTHORITY\SYSTEM".

Remediation

Check the references section for vendor advisories, patches, and mitigation guidance. If immediate patching is not possible, review the CVSS vector to understand the attack surface and apply compensating controls such as network segmentation or access restrictions.

Frequently Asked Questions

What is CVE-2024-50590?

CVE-2024-50590 is a high-severity vulnerability. It was published on November 8, 2024 and has a CVSS 3.1 base score of 7.8 (HIGH).

How severe is CVE-2024-50590?

This vulnerability has a CVSS 3.1 base score of 7.8, rated HIGH. It requires local or adjacent network access to exploit. Some level of privileges is required for exploitation.

How do I fix or remediate CVE-2024-50590?

Check the references section for vendor advisories, patches, and mitigation guidance. If immediate patching is not possible, review the CVSS vector to understand the attack surface and apply compensating controls such as network segmentation or access restrictions.

How can CyberStrike help with CVE-2024-50590?

CyberStrike's AI-powered security agents can automatically detect CVE-2024-50590 across your infrastructure using autonomous pentesting, DAST scanning, and HackBrowser. The platform continuously monitors for known vulnerabilities and provides actionable remediation guidance prioritized by real-world exploitability.