High severity7.8NVD Advisory· Published Mar 10, 2022· Updated Jul 9, 2026
CVE-2022-24618
CVE-2022-24618
Description
Heimdal.Wizard.exe installer in Heimdal Premium Security 2.5.395 and earlier has insecure permissions, which allows unprivileged local users to elevate privileges to SYSTEM via the "Browse For Folder" window accessible by triggering a "Repair" on the MSI package located in C:\Windows\Installer.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- cpe:2.3:a:heimdalsecurity:heimdal_premium_security:*:*:*:*:*:*:*:*Range: <2.5.398
- Heimdal/Premium Securitydescription
- Range: <=2.5.395
Patches
Vulnerability mechanics
References
1- support.heimdalsecurity.com/hc/en-us/articles/4425942979473-2-5-398-PROD-and-2-5-401-RCnvdRelease NotesVendor Advisory
News mentions
0No linked articles in our index yet.