Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-49852 | Okta Privileged Access server agent (SFTD) versions 1.82.0 to 1.84.0 are affected by a privilege escalation vulnerability when the sudo command bundles feature is enabled. To remediate this vulnerability, upgrade the Okta Privileged Access server agent (SFTD) to version 1.87.1 or greater. |
Solution
To remediate this vulnerability, upgrade the Okta Privileged Access server agent (SFTD) to version 1.87.1 or greater.
Workaround
No workaround given by the vendor.
Fri, 22 Nov 2024 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Okta
Okta privileged Access Server Agent Sftd |
|
| CPEs | cpe:2.3:a:okta:privileged_access_server_agent_sftd:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Okta
Okta privileged Access Server Agent Sftd |
|
| Metrics |
ssvc
|
Wed, 20 Nov 2024 22:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Okta Privileged Access server agent (SFTD) versions 1.82.0 to 1.84.0 are affected by a privilege escalation vulnerability when the sudo command bundles feature is enabled. | Okta Privileged Access server agent (SFTD) versions 1.82.0 to 1.84.0 are affected by a privilege escalation vulnerability when the sudo command bundles feature is enabled. To remediate this vulnerability, upgrade the Okta Privileged Access server agent (SFTD) to version 1.87.1 or greater. |
Wed, 20 Nov 2024 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Okta Privileged Access server agent (SFTD) versions 1.82.0 to 1.84.0 are affected by a privilege escalation vulnerability when the sudo command bundles feature is enabled. | |
| Weaknesses | CWE-20 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Okta
Published:
Updated: 2024-11-22T15:25:43.803Z
Reserved: 2024-10-11T16:36:50.988Z
Link: CVE-2024-9875
Updated: 2024-11-22T15:25:38.745Z
Status : Awaiting Analysis
Published: 2024-11-21T09:54:49.903
Modified: 2024-11-21T13:57:24.187
Link: CVE-2024-9875
No data.
OpenCVE Enrichment
No data.
EUVD