PT-2023-3648 · Eset · Eset Endpoint Antivirus+2

Published

2023-06-14

·

Updated

2023-07-05

·

CVE-2023-2847

CVSS v3.1

7.8

High

VectorAV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions ESET Server Security (affected versions not specified) ESET Endpoint Antivirus (affected versions not specified) ESET Cyber Security (affected versions not specified) ESET Endpoint Antivirus (affected versions not specified)
Description A local privilege escalation issue has been identified due to improper privilege management. This allows a user with lower privileges to trigger actions with root privileges. ESET has prepared new builds of its products that are no longer susceptible to this issue.
Recommendations For ESET Server Security, update to a newer version that includes the fix for this issue. For ESET Endpoint Antivirus, update to a newer version that includes the fix for this issue. For ESET Cyber Security, update to a newer version that includes the fix for this issue. For ESET Endpoint Antivirus, update to a newer version that includes the fix for this issue.

Fix

Improper Privilege Management

Weakness Enumeration

Related Identifiers

BDU:2023-03932
CVE-2023-2847

Affected Products

Eset Cyber Security
Eset Endpoint Antivirus
Eset Server Security