Bypass Vulnerability in WatchGuard Endpoint Protection and Response Software
CVE-2023-26237
6.7MEDIUM
Summary
A bypass vulnerability exists in WatchGuard's Endpoint Protection and Response (EPDR) version 8.0.21.0002 that allows an attacker to bypass the software's defensive mechanisms. This is achieved by adding a registry key while assuming SYSTEM privileges, potentially exposing systems to unauthorized access and further exploitation. Mitigating this vulnerability is crucial to maintain the integrity and security of endpoints protected by WatchGuard EPDR.
References
CVSS V3.1
Score:
6.7
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved