Permissions, Privileges, and Access Controls in Absolute Persistence Module - CVE-2024-6364

 

Permissions, Privileges, and Access Controls in Absolute Persistence Module - CVE-2024-6364

Published: July 28, 2025


Vulnerability identifier: #VU113356
CSH Severity: Low
CVSS v4.0: CVSS:4.0/AV:P/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear
CVE-ID: CVE-2024-6364
CWE-ID: CWE-264
Exploitation vector: Local access
Exploit availability: No public exploit available
Vendor: Absolute
Affected software:
Absolute Persistence Module

Detailed vulnerability description

The vulnerability allows an attacker to compromise the affected system.

The vulnerability exists due to an unspecified vulnerability in Absolute Persistence Software. An attacker with physical access to device and full hostile network control can execute arbitrary OS commands on the device. 


How to mitigate CVE-2024-6364

Install updates from vendor's website.

Sources