Netwrix CoSoSys Endpoint Protector through 5.9.3 and CoSoSys Unify through 7.0.6 contain a remote code execution vulnerability in the Endpoint Protector and Unify agent in the way that the EasyLock dependency is acquired from the server. An attacker with administrative access to the Endpoint Protector or Unify server can cause a client to acquire and execute a malicious file resulting in remote code execution.
CVSS

No CVSS.

History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2024-06-27T00:00:00

Updated: 2024-07-11T19:48:15.490Z

Reserved: 2024-05-19T00:00:00


Link: CVE-2024-36074

JSON object: View

cve-icon NVD Information

Status : Received

Published: 2024-06-27T21:15:15.520

Modified: 2024-06-27T21:15:15.520


Link: CVE-2024-36074

JSON object: View

cve-icon Redhat Information

No data.

CWE

No CWE.