---
id: CVE-2024-14012
title: >-
  Potential privilege escalation issue in Revenera InstallShield version 2023 R1
  running a renamed Setup.exe on Windows
summary: >-
  Potential privilege escalation issue in Revenera InstallShield version 2023 R1
  running a renamed Setup.exe on Windows. When a local administrator executes a
  renamed Setup.exe, the MPR.dll may get loaded from an insecure location and
  can …
severity: none
cwe:
  - CWE-426
published: '2025-10-29'
updated: '2026-10-02'
sourceUpdated: '2026-10-02T00:10:00.180'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2024-14012'
references:
  - url: >-
      https://community.revenera.com/s/article/CVE-2024-14012-Potential-Privilege-Escalation-in-InstallShield-2023-R1
    label: PSIRT-CNA@flexerasoftware.com
tags:
  - nvd
epss: 0.00134
epssPercentile: 0.02448
ingestedAt: '2026-10-02T01:05:54.703Z'
---

## Overview

Potential privilege escalation issue in Revenera InstallShield version 2023 R1 running a renamed Setup.exe on Windows. When a local administrator executes a renamed Setup.exe, the MPR.dll may get loaded from an insecure location and can result in a privilege escalation. The issue has been fixed in versions 2023 R2 and later.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
