High severity7.8NVD Advisory· Published Oct 16, 2024· Updated Jun 17, 2026
CVE-2024-9858
CVE-2024-9858
Description
There exists an insecure default user permission in Google Cloud Migrate to containers from version 1.1.0 to 1.2.2 Windows installs. A local "m2cuser" was greated with administrator privileges. This posed a security risk if the "analyze" or "generate" commands were interrupted or skipping the action to delete the local user “m2cuser”. We recommend upgrading to 1.2.3 or beyond
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:google:migrate_to_containers:*:*:*:*:*:*:*:*Range: >=1.1.0,<1.2.3
1.1.0 - 1.2.2+ 1 more
- (no CPE)range: 1.1.0 - 1.2.2
- (no CPE)range: 1.1.0
Patches
Vulnerability mechanics
References
1- cloud.google.com/migrate/containers/docs/m2c-cli-relnotesnvdVendor Advisory
News mentions
0No linked articles in our index yet.