Netwrix CoSoSys Endpoint Protector through 5.9.3 and CoSoSys Unify through 7.0.6 contain a remote code execution vulnerability in the Endpoint Protector and Unify agent in the way that the EasyLock dependency is acquired from the server. An attacker with administrative access to the Endpoint Protector or Unify server can cause a client to acquire and execute a malicious file resulting in remote code execution.
CVSS
No CVSS.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2024-06-27T00:00:00
Updated: 2024-07-11T19:48:15.490Z
Reserved: 2024-05-19T00:00:00
Link: CVE-2024-36074
JSON object: View
NVD Information
Status : Received
Published: 2024-06-27T21:15:15.520
Modified: 2024-06-27T21:15:15.520
Link: CVE-2024-36074
JSON object: View
Redhat Information
No data.
CWE
No CWE.