Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9qv7-h3f8-5wpx

Опубликовано: 28 мар. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 6.7

Описание

Insecure Win32 memory objects in Endpoint Windows Agents in RSA NetWitness Platform before 12.2 allow local and admin Windows user accounts to modify the endpoint agent service configuration: to either disable it completely or run user-supplied code or commands, thereby bypassing tamper-protection features via ACL modification.

Insecure Win32 memory objects in Endpoint Windows Agents in RSA NetWitness Platform before 12.2 allow local and admin Windows user accounts to modify the endpoint agent service configuration: to either disable it completely or run user-supplied code or commands, thereby bypassing tamper-protection features via ACL modification.

EPSS

Процентиль: 87%
0.03353
Низкий

6.7 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.7
nvd
почти 3 года назад

Insecure Win32 memory objects in Endpoint Windows Agents in RSA NetWitness Platform before 12.2 allow local and admin Windows user accounts to modify the endpoint agent service configuration: to either disable it completely or run user-supplied code or commands, thereby bypassing tamper-protection features via ACL modification.

EPSS

Процентиль: 87%
0.03353
Низкий

6.7 Medium

CVSS3