Beveiligingsadvies

CVE-2024-23772

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-04-30 00:00:00
Laatst bijgewerkt 2024-08-09 20:52:13
Toegewezen door mitre
CVSS-score 6.6
Status PUBLISHED

Beschrijving

An issue was discovered in Quest KACE Agent for Windows 12.0.38 and 13.1.23.0. An Arbitrary file create vulnerability exists in the KSchedulerSvc.exe, KUserAlert.exe, and Runkbot.exe components. This allows local attackers to create any file of their choice with NT Authority\SYSTEM privileges.