Netwrix CoSoSys Endpoint Protector through 5.9.3 and CoSoSys Unify through 7.0.6 contain a remote code execution vulnerability in the shadowing component of the Endpoint Protector and Unify agent which allows an attacker with administrative access to the Endpoint Protector or Unify server to overwrite sensitive configuration and subsequently execute system commands with SYSTEM/root privileges on a chosen client endpoint.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2024-06-27T00:00:00
Updated: 2024-08-02T03:30:12.673Z
Reserved: 2024-05-19T00:00:00
Link: CVE-2024-36073
Vulnrichment
Updated: 2024-08-02T03:30:12.673Z
NVD
Status : Awaiting Analysis
Published: 2024-06-27T21:15:15.420
Modified: 2024-08-01T13:52:46.217
Link: CVE-2024-36073
Redhat
No data.