Local Privilege Escalation in ESET Management Agent by ESET
CVE-2025-13818

8.3HIGH

Key Information:

Vendor
CVE Published:
6 February 2026

What is CVE-2025-13818?

A local privilege escalation vulnerability exists in ESET Management Agent due to insecure execution of temporary batch files during software operations. This flaw may allow an unauthenticated attacker to gain elevated privileges on affected installations, potentially compromising system integrity and confidentiality. Users are advised to update to the latest version to mitigate this risk.

Affected Version(s)

ESET Management Agent Windows 0 <= 12.5.2104.0

References

CVSS V4

Score:
8.3
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.