Low-Privileged User Can Elevate Privileges Through Service Executable Overwrite

CVE-2024-0259
7.3HIGH

Key Information

Vendor
Fortra
Status
Robot Schedule Enterprise Agent
Vendor
CVE Published:
28 March 2024

Summary

Fortra's Robot Schedule Enterprise Agent for Windows prior to version 3.04 is susceptible to privilege escalation. A low-privileged user can overwrite the service executable. When the service is restarted, the replaced binary runs with local system privileges, allowing a low-privileged user to gain elevated privileges.

Affected Version(s)

Robot Schedule Enterprise Agent < 3.04

CVSS V3.1

Score:
7.3
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published.

  • Vulnerability Reserved.

Collectors

NVD DatabaseMitre Database

Credit

Travis Dotseth, Prime Therapeutics
.