Improper access control vulnerability exists in the specific folder of SKYSEA Client View versions from Ver.16.100 prior to Ver.19.2. If this vulnerability is exploited, an arbitrary file may be placed in the specific folder by a user who can log in to the PC where the product's Windows client is installed. In case the file is a specially crafted DLL file, arbitrary code may be executed with SYSTEM privilege.
Use CWE-284, Skygroup vendor hub and Skysea Client View product page to widen CVE-2024-21805 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2016-7836, CVE-2024-41143 and CVE-2024-41139 for nearby disclosures in the same product family.