CVE-2024-57394

The quarantine - restore function in Qi-ANXIN Tianqing Endpoint Security Management System v10.0 allows user to restore a malicious file to an arbitrary file path. Attackers can write malicious DLL to system path and perform privilege escalation by leveraging Windows DLL hijacking vulnerabilities.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:qianxin:tianqing_endpoint_security_management_system:10.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-04-21 18:15

Updated : 2025-06-23 13:08


NVD link : CVE-2024-57394

Mitre link : CVE-2024-57394

CVE.ORG link : CVE-2024-57394


JSON object : View

Products Affected

qianxin

  • tianqing_endpoint_security_management_system
CWE
CWE-73

External Control of File Name or Path