Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-49456 | A local privilege escalation vulnerability in Sophos Intercept X for Windows with Central Device Encryption 2024.2.0 and older allows writing of arbitrary files. |
Wed, 02 Oct 2024 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Sophos
Sophos intercept X |
|
| CPEs | cpe:2.3:a:sophos:intercept_x:-:*:*:*:central:macos:*:* | |
| Vendors & Products |
Sophos
Sophos intercept X |
|
| Metrics |
ssvc
|
Wed, 02 Oct 2024 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A local privilege escalation vulnerability in Sophos Intercept X for Windows with Central Device Encryption 2024.2.0 and older allows writing of arbitrary files. | A local privilege escalation vulnerability in Sophos Intercept X for Windows with Central Device Encryption 2024.2.0 and older allows writing of arbitrary files. |
Wed, 02 Oct 2024 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A local privilege escalation vulnerability in the Device Encryption component of Sophos Intercept X for Windows older than version 2024.3 allows writing of arbitrary files. | A local privilege escalation vulnerability in Sophos Intercept X for Windows with Central Device Encryption 2024.2.0 and older allows writing of arbitrary files. |
Wed, 02 Oct 2024 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-1104 CWE-502 |
|
| Metrics |
cvssV3_1
|
cvssV3_1
|
Wed, 02 Oct 2024 12:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A local privilege escalation vulnerability in the Device Encryption component of Sophos Intercept X for Windows older than version 2024.3 allows writing of arbitrary files. | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Sophos
Published:
Updated: 2024-10-02T14:24:29.783Z
Reserved: 2024-09-16T09:07:04.491Z
Link: CVE-2024-8885
Updated: 2024-10-02T14:24:21.444Z
Status : Deferred
Published: 2024-10-02T13:15:12.410
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-8885
No data.
OpenCVE Enrichment
No data.
EUVD