Vulnerability CVE-2024-5681


Published: 2024-07-11

Description:
CWE-20: Improper Input Validation vulnerability exists that could cause local denial-of-service,
privilege escalation, and potentially kernel execution when a malicious actor with local user
access crafts a script/program using an IOCTL call in the Foxboro.sys driver.

Type:

CWE-20

(Improper Input Validation)

 References:
https://download.schneider-electric.com/files?p_Doc_Ref=SEVD-2024-191-02&p_enDocType=Security+and+Safety+Notice&p_File_Name=SEVD-2024-191-02.pdf

Copyright 2026, cxsecurity.com

 

Back to Top