CVE-2024-36340CWE-1386

A junction point vulnerability within AMD uProf can allow a local low-privileged attacker to create junction points, potentially resulting in arbitrary file…

Medium · published May 13, 2025

CVSS v3.1
6.6
EPSS
0%
Percentile
5.3
In the wild
Unconfirmed
What it is

A junction point vulnerability within AMD uProf can allow a local low-privileged attacker to create junction points, potentially resulting in arbitrary file deletion or disclosure.

The record
Technical detail
CVSS v3.1
6.6 · MEDIUM
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:N
CVSS v4.0
Not supplied
EPSS
0.00158 · 5.3th percentile
Weakness
CWE-1386 · Insecure Operation on Windows Junction / Mount Point
Published
2025-05-13T14:04Z
EPSS history
Timeline
  • 13 MAY 14:04Z
    A junction point vulnerability within AMD uProf can allow a local low-privileged attacker to create junction points, potentially resulting in arbitrary file…
    cvelistv5