Description
Netwrix CoSoSys Endpoint Protector through 5.9.3 and CoSoSys Unify through 7.0.6 contain a remote code execution vulnerability in the logging component of the Endpoint Protector and Unify server application which allows an unauthenticated remote attacker to send a malicious request, resulting in the ability to execute system commands with root privileges.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
No history.
Subscriptions
No data.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-02T03:30:12.535Z
Reserved: 2024-05-19T00:00:00.000Z
Link: CVE-2024-36072
Updated: 2024-08-02T03:30:12.535Z
Status : Deferred
Published: 2024-06-27T21:15:15.327
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-36072
No data.
OpenCVE Enrichment
No data.
Weaknesses