VYPR
Low severity3.8NVD Advisory· Published Oct 29, 2024· Updated Jun 17, 2026

CVE-2024-10228

CVE-2024-10228

Description

The Vagrant VMWare Utility Windows installer targeted a custom location with a non-protected path that could be modified by an unprivileged user, introducing potential for unauthorized file system writes. This vulnerability, CVE-2024-10228, was fixed in Vagrant VMWare Utility 1.0.23

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:a:hashicorp:vagrant_vmware_utility:*:*:*:*:*:windows:*:*+ 1 more
    • cpe:2.3:a:hashicorp:vagrant_vmware_utility:*:*:*:*:*:windows:*:*range: <1.0.23
    • (no CPE)range: >= 1.0.23
  • Hashicorp/Vagrantcpe-rescue
    Range: 0

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.