Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2024-4229

22
FAUCET Score

CVE-2024-4229 is an Incorrect Default Permissions vulnerability affecting Edgecross Basic Software for Windows and Edgecross Basic Software for Developers, versions 1.00 and later. This flaw allows a local attacker to execute arbitrary malicious code, leading to information disclosure, data tampering or deletion, or a denial-of-service condition, provided the software is installed in a non-restricted directory. The vulnerability carries a high CVSS score of 7.8, indicating a significant risk. Its attack vector is local, but attack complexity is high, and it can result in complete compromise of confidentiality, integrity, and availability. Currently, there is no evidence of active exploitation, and no public exploit code is available on platforms like Metasploit or ExploitDB. Community discussion and media coverage for this CVE are also minimal.

Impacted Technologies

VendorProductVersion(s)CPE
Edgecross ConsortiumEdgecross Basic Software For Developers
versions 1.00 and laterCNA affecteddefault unaffected
Edgecross ConsortiumEdgecross Basic Software For Windows
versions 1.00 and laterCNA affecteddefault unaffected

CVSS Data

CVSS version used by this source: 3.1

7.8HIGH

CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H

Attack Vector
LOCAL
Attack Complexity
HIGH
Privileges Required
LOW
User Interaction
NONE
Scope
CHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
1.1
Impact Score
6.0
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.16%
Probability of exploitation in next 30 days
EPSS Percentile
5.5%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0016 is in the 24th percentile among its peer group of 1,525 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.4 InfoSec Media, 0.1 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Remediation records are not available for this CVE.

References

jvn.jp / vu/JVNVU92857077/index.html
edgecross.org / client_info/EDGECROSS/view/userweb/ext/en/data-download/pdf/ECD-TE10-0003-01-EN.pdf