Netwrix CoSoSys Endpoint Protector through 5.9.3 and CoSoSys Unify through 7.0.6 contain a remote code execution vulnerability in the logging component of the Endpoint Protector and Unify server application which allows an unauthenticated remote attacker to send a malicious request, resulting in the ability to execute system commands with root privileges.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-02T03:30:12.535Z

Reserved: 2024-05-19T00:00:00

Link: CVE-2024-36072

cve-icon Vulnrichment

Updated: 2024-08-02T03:30:12.535Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-06-27T21:15:15.327

Modified: 2024-11-21T09:21:34.530

Link: CVE-2024-36072

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.