Remote Code Execution Vulnerability in Endpoint Protector and Unify Agent
CVE-2024-36074

Currently unrated

Key Information:

Vendor

Netwrix

Vendor
CVE Published:
27 June 2024

What is CVE-2024-36074?

Netwrix CoSoSys Endpoint Protector through 5.9.3 and CoSoSys Unify through 7.0.6 contain a remote code execution vulnerability in the Endpoint Protector and Unify agent in the way that the EasyLock dependency is acquired from the server. An attacker with administrative access to the Endpoint Protector or Unify server can cause a client to acquire and execute a malicious file resulting in remote code execution.

References

Timeline

  • Vulnerability published

.