CVE-2024-36074

Netwrix CoSoSys Endpoint Protector through 5.9.3 and CoSoSys Unify through 7.0.6 contain a remote code execution vulnerability in the Endpoint Protector and Unify agent in the way that the EasyLock dependency is acquired from the server. An attacker with administrative access to the Endpoint Protector or Unify server can cause a client to acquire and execute a malicious file resulting in remote code execution.
Configurations

No configuration.

History

No history.

Information

Published : 2024-06-27 21:15

Updated : 2024-07-12 16:11


NVD link : CVE-2024-36074

Mitre link : CVE-2024-36074

CVE.ORG link : CVE-2024-36074


JSON object : View

Products Affected

No product.

CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')