TROYANOSYVIRUS
Volver a CVEs

CVE-2022-38774

HIGH
7.8

Descripcion

An issue was discovered in the quarantine feature of Elastic Endpoint Security and Elastic Endgame for Windows, which could allow unprivileged users to elevate their privileges to those of the LocalSystem account.

Detalles CVE

Puntuacion CVSS v3.17.8
SeveridadHIGH
Vector CVSSCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Vector de ataqueLOCAL
ComplejidadLOW
Privilegios requeridosLOW
Interaccion usuarioNONE
Publicado1/26/2023
Ultima modificacion4/2/2025
Fuentenvd
Avistamientos honeypot0

Productos afectados

elastic:endgameelastic:endpoint_securitymicrosoft:windows

Debilidades (CWE)

CWE-269

Correlaciones IOC

Sin correlaciones registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.