CVE-2024-57394

The quarantine - restore function in Qi-ANXIN Tianqing Endpoint Security Management System v10.0 allows user to restore a malicious file to an arbitrary file path. Attackers can write malicious DLL to system path and perform privilege escalation by leveraging Windows DLL hijacking vulnerabilities.
CVSS

No CVSS.

References
Configurations

Configuration 1 (hide)

cpe:2.3:a:qianxin:tianqing_endpoint_security_management_system:10.0:*:*:*:*:*:*:*

History

23 Jun 2025, 13:08

Type Values Removed Values Added
References () https://github.com/cwjchoi01/CVE-2024-57394 - () https://github.com/cwjchoi01/CVE-2024-57394 - Exploit, Third Party Advisory
References () https://en.qianxin.com/product/detail/165 - () https://en.qianxin.com/product/detail/165 - Product
First Time Qianxin tianqing Endpoint Security Management System
Qianxin
CPE cpe:2.3:a:qianxin:tianqing_endpoint_security_management_system:10.0:*:*:*:*:*:*:*

21 Apr 2025, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-04-21 18:15

Updated : 2025-06-23 13:08


NVD link : CVE-2024-57394

Mitre link : CVE-2024-57394


JSON object : View

Products Affected

qianxin

  • tianqing_endpoint_security_management_system
CWE

No CWE.