Remote code execution vulnerabilities exist in the Netwrix Auditor User Activity Video Recording component affecting both the Netwrix Auditor server and agents installed on monitored systems. The remote code execution vulnerabilities exist within the underlying protocol used by the component, and potentially allow an unauthenticated remote attacker to execute arbitrary code as the NT AUTHORITY\SYSTEM user on affected systems, including on systems Netwrix Auditor monitors.
References
Link Resource
https://bishopfox.com/blog/netwrix-auditor-advisory Exploit Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2022-11-08T00:00:00

Updated: 2022-11-08T00:00:00

Reserved: 2022-05-18T00:00:00


Link: CVE-2022-31199

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2022-11-08T01:15:09.767

Modified: 2022-11-09T19:33:12.197


Link: CVE-2022-31199

JSON object: View

cve-icon Redhat Information

No data.

CWE