During internal security analysis, a local privilege escalation vulnerability has been identified. On a machine with the affected ESET product installed, it was possible for a user with lower privileges due to improper privilege management to trigger actions with root privileges.
ESET remedied this possible attack vector and has prepared new builds of its products that are no longer susceptible to this vulnerability.
References
Link | Resource |
---|---|
https://support.eset.com/en/ca8447 | Vendor Advisory |
https://support.eset.com/en/ca8447 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 07:59
Type | Values Removed | Values Added |
---|---|---|
References | () https://support.eset.com/en/ca8447 - Vendor Advisory |
05 Jul 2023, 13:28
Type | Values Removed | Values Added |
---|---|---|
References | (MISC) https://support.eset.com/en/ca8447 - Vendor Advisory | |
First Time |
Eset server Security
Eset endpoint Antivirus Eset Eset cyber Security |
|
CPE | cpe:2.3:a:eset:endpoint_antivirus:*:*:*:*:*:macos:*:* cpe:2.3:a:eset:cyber_security:*:*:*:*:*:*:*:* cpe:2.3:a:eset:server_security:*:*:*:*:*:linux_kernel:*:* cpe:2.3:a:eset:endpoint_antivirus:*:*:*:*:*:linux_kernel:*:* |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.8 |
CWE | CWE-269 |
15 Jun 2023, 08:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-06-15 08:15
Updated : 2024-11-21 07:59
NVD link : CVE-2023-2847
Mitre link : CVE-2023-2847
CVE.ORG link : CVE-2023-2847
JSON object : View
Products Affected
eset
- server_security
- endpoint_antivirus
- cyber_security
CWE
CWE-269
Improper Privilege Management