
Public Disclosure of CVE-2024-55347
Public Disclosure of CVE-2024-55347 🚀
Date: [10-02-2025]
A Binary Planting vulnerability in Kroll Artifact Parser And Extractor (KAPE) v1.3.0.2 allows attackers to escalate privileges and execute arbitrary code by placing a maliciously crafted Binary file in a specific directory. This can lead to unauthorized system access and potential compromise of sensitive data.
The KAPE Product Team, its developer, and CVE Mitre were informed about a Binary Planting issue in Kroll Artifact Parser And Extractor (KAPE) v1.3.0.2 that could allow attackers to escalate privileges and execute arbitrary code. A successful exploit would require a local user to place a malicious DLL in the same directory as the target binary, leading to unauthorized code execution when KAPE runs.
If successful, the attackers code would execute with the elevated privileges of the application.
This vulnerability was discovered by Sahil Shah, Ramya Shah & Shaurya. We thank the Vendor & CVE MITRE for their co-operation.

If you have any questions or need more information, feel free to reach out at [[email protected]] or LinkedIn
#CVE-2024-55347 #PublicDisclosure #CVE #sahil3276 #sahilshah3276