First published: Thu Sep 23 2021(Updated: )
DLL hijacking in Panda Agent <=1.16.11 in Panda Security, S.L.U. Panda Adaptive Defense 360 <= 8.0.17 allows attacker to escalate privileges via maliciously crafted DLL file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Panda AD360 | <=8.0.17 | |
Pandasecurity Panda Devices Agent | <=1.16.11 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-26750 is considered high severity due to its potential for privilege escalation through DLL hijacking.
To fix CVE-2021-26750, upgrade to the latest versions of Panda Adaptive Defense 360 or Panda Devices Agent, which address the vulnerability.
The impact of CVE-2021-26750 is that an attacker can escalate privileges on affected systems via a maliciously crafted DLL file.
CVE-2021-26750 affects Panda Adaptive Defense 360 versions up to 8.0.17 and Panda Devices Agent versions up to 1.16.11.
Organizations using affected versions of Panda security products should be concerned about CVE-2021-26750 and take immediate action to mitigate the risk.