MSI Installer Flaw Enables Privilege Escalation on Windows Systems

Red | Vulnerability Report

Summary:

A critical local privilege escalation vulnerability has been discovered in MSI Center versions 2.0.36.0 and earlier, allowing low-privileged users to escalate their privileges on Windows systems. This security flaw, tracked as CVE-2024-37726, stems from insecure file operations performed by the MSI Center application running with NT AUTHORITYSYSTEM privileges.

Threat Level – Red | Vulnerability Report

Reduce real exposure. Not just vulnerability volume.