Insecure Permissions in Netwrix Auditor Logs by Netwrix
CVE-2019-14969
What is CVE-2019-14969?
Netwrix Auditor versions prior to 9.8 exhibit a significant vulnerability due to insecure permissions on log directories, specifically %PROGRAMDATA%\Netwrix Auditor\Logs\ActiveDirectory\ and its sub-folders. The associated service, Netwrix.ADA.StorageAuditService, fails to apply proper impersonation techniques. This oversight allows low-privileged users to potentially exploit the permissions set on the logs, facilitating attacks such as DLL hijacking and binary planting. Consequently, an attacker could execute arbitrary code with elevated privileges, mimicking the NT AUTHORITY\SYSTEM profile by leveraging symbolic links.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
