PT-2026-33248 · Unknown · Winmatrix Agent
Published
2026-04-16
·
Updated
2026-04-16
·
CVE-2026-6348
CVSS v3.1
8.8
High
| AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
WinMatrix agent (affected versions not specified)
Description
A missing authentication flaw allows authenticated local attackers to execute arbitrary code with SYSTEM privileges on the local machine. This issue can lead to privilege escalation that spreads across all hosts within the environment where the agent is installed, potentially allowing a single compromised endpoint to affect the entire network.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
LPE
Missing Authentication
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Winmatrix Agent