Bypass Vulnerability in WatchGuard Endpoint Protection and Response Software
CVE-2023-26237

6.7MEDIUM

Key Information:

Vendor
Watchguard
Vendor
CVE Published:
5 October 2023

Summary

A bypass vulnerability exists in WatchGuard's Endpoint Protection and Response (EPDR) version 8.0.21.0002 that allows an attacker to bypass the software's defensive mechanisms. This is achieved by adding a registry key while assuming SYSTEM privileges, potentially exposing systems to unauthorized access and further exploitation. Mitigating this vulnerability is crucial to maintain the integrity and security of endpoints protected by WatchGuard EPDR.

References

CVSS V3.1

Score:
6.7
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.