Vulnerabilities > CVE-2024-40721 - Unspecified vulnerability in Changingtec TCB Servisign
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
HIGH Summary
The specific API in TCBServiSign Windows Version from CHANGING Information Technology does not properly validate server-side input. When a user visits a spoofed website, unauthenticated remote attackers can cause the TCBServiSign to load a DLL from an arbitrary path.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |