Back to Database
Status published
High
CVE-2024-11859
DLL Search Order Hijacking in ESET products for Windows
Vulnerability Description
DLL Search Order Hijacking vulnerability potentially allowed an attacker with administrator privileges to load a malicious dynamic-link library and execute its code.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-11859
Credits & Attribution
No credits recorded in the NVD database.
More from ESET, spol. s r.o.
View All →CVE-2024-7400
Local privilege escalation in ESET products for Windows
High
8.5
CVE-2024-6654
Denial of Service vulnerability in ESET products for macOS
Medium
6.8
CVE-2024-2003
Local Privilege Escalation in Quarantine of ESET products for Windows
High
7.3
CVE-2024-0353
Local privilege escalation in Windows products
High
7.8
CVE-2023-7043
Unquoted path privilege vulnerability in ESET products for Windows
Low
3.3
Affected Vendor
ESET, spol. s r.o.
View all reports →Affected Software
ESET NOD32 Antivirus, ESET Internet Security, ESET Smart Security Premium, ESET Security Ultimate, ESET Endpoint Antivirus for Windows, ESET Endpoint Security for Windows, ESET Small Business Security, ESET Safe Server, ESET Server Security for Windows Server, ESET Mail Security for Microsoft Exchange Server, ESET Security for Microsoft SharePoint Server
Vulnerable Versions:
0
Timeline
Official Publish:
April 7th, 2025
Last Modified:
April 16th, 2025
Added to House:
July 22nd, 2026