Netwrix CoSoSys Endpoint Protector through 5.9.3 and CoSoSys Unify through 7.0.6 contain a remote code execution vulnerability in the Endpoint Protector and Unify agent in the way that the EasyLock dependency is acquired from the server. An attacker with administrative access to the Endpoint Protector or Unify server can cause a client to acquire and execute a malicious file resulting in remote code execution.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2024-06-27T00:00:00
Updated: 2024-08-02T03:30:12.958Z
Reserved: 2024-05-19T00:00:00
Link: CVE-2024-36074
Vulnrichment
Updated: 2024-08-02T03:30:12.958Z
NVD
Status : Awaiting Analysis
Published: 2024-06-27T21:15:15.520
Modified: 2024-07-12T16:11:40.723
Link: CVE-2024-36074
Redhat
No data.