VYPR
High severityNVD Advisory· Published Oct 2, 2020· Updated Sep 17, 2024

Local Privilege Escalation in cloudflared

CVE-2020-24356

Description

cloudflared versions prior to 2020.8.1 contain a local privilege escalation vulnerability on Windows systems. When run on a Windows system, cloudflared searches for configuration files which could be abused by a malicious entity to execute commands as a privileged user. Version 2020.8.1 fixes this issue.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
github.com/cloudflare/cloudflaredGo
< 0.0.0-20200820025921-9323844ea7730.0.0-20200820025921-9323844ea773

Affected products

2

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.