Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-54397 | A code injection vulnerability in the Debian package component of Taegis Endpoint Agent (Linux) versions older than 1.3.10 allows local users arbitrary code execution as root. Redhat-based systems using RPM packages are not affected. |
Wed, 07 May 2025 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Debian
Debian debian Linux Sophos Sophos taegis Endpoint Agent |
|
| Weaknesses | CWE-94 | |
| CPEs | cpe:2.3:a:sophos:taegis_endpoint_agent:*:*:*:*:*:linux:*:* cpe:2.3:o:debian:debian_linux:-:*:*:*:*:*:*:* |
|
| Vendors & Products |
Debian
Debian debian Linux Sophos Sophos taegis Endpoint Agent |
Fri, 11 Apr 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 11 Apr 2025 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A code injection vulnerability in the Debian package component of Taegis Endpoint Agent (Linux) versions older than 1.3.10 allows local users arbitrary code execution as root. Redhat-based systems using RPM packages are not affected. | |
| Weaknesses | CWE-732 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Sophos
Published:
Updated: 2026-02-26T18:28:26.561Z
Reserved: 2025-02-11T17:39:11.642Z
Link: CVE-2024-13861
Updated: 2025-04-11T13:19:33.008Z
Status : Analyzed
Published: 2025-04-11T13:15:40.097
Modified: 2025-05-07T16:34:40.470
Link: CVE-2024-13861
No data.
OpenCVE Enrichment
No data.
EUVD