CVE-2024-9490 describes a DLL hijacking vulnerability within the Silicon Labs (8-bit) IDE installer, stemming from an uncontrolled search path. This flaw carries a high CVSS score of 8.6, indicating that an attacker could achieve privilege escalation and arbitrary code execution if a user runs the vulnerable installer. While the vulnerability is severe, there is currently no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
| Silabs.Com | Silicon Labs IDE (8-Bit) | >= 0, <= 5.50CNA affecteddefault affected |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.