Robotmk before 2.0.1 allows a local user to escalate privileges (e.g., to SYSTEM) if automated Python environment setup is enabled, because the "shared holotree usage" feature allows any user to edit any Python environment.
Metrics
Affected Vendors & Products
References
History
Thu, 26 Feb 2026 23:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Robotmk
Robotmk robotmk |
|
| CPEs | cpe:2.3:a:robotmk:robotmk:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Robotmk
Robotmk robotmk |
|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-02T04:33:11.627Z
Reserved: 2024-07-04T00:00:00.000Z
Link: CVE-2024-39934
Updated: 2024-08-02T04:33:11.627Z
Status : Awaiting Analysis
Published: 2024-07-04T19:15:10.967
Modified: 2024-11-21T09:28:36.553
Link: CVE-2024-39934
No data.
OpenCVE Enrichment
No data.