THREATOPS
THREAT OPSThreat News › [NVD] CVE-2024-58315 (HIGH 7.8) — Tosibox Key Service 3.3.0 contains an unquoted service path vulnerability that allows local non-privileged users to potentially execute code with elevated system privileges. Attackers can exploit the service startup process by inserting malicious code in the system root path, ena

[NVD] CVE-2024-58315 (HIGH 7.8) — Tosibox Key Service 3.3.0 contains an unquoted service path vulnerability that allows local non-privileged users to potentially execute code with elevated system privileges. Attackers can exploit the service startup process by inserting malicious code in the system root path, ena

lownvdPublished 2025-12-30

CVE-2024-58315 CVSS: 7.8 HIGH Published: 2025-12-30T23:15:48.700

Tosibox Key Service 3.3.0 contains an unquoted service path vulnerability that allows local non-privileged users to potentially execute code with elevated system privileges. Attackers can exploit the service startup process by inserting malicious code in the system root path, enabling unauthorized code execution during application s

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2024-58315