CVE-2022-38774: High severity elastic vulnerability
Published Jan 24, 2023
·Updated
An issue was discovered in the quarantine feature of Elastic Endpoint Security and Elastic Endgame for Windows, which could allow unprivileged users to elevate their privileges to those of the LocalSystem account.
Affected Software
8 affected components
Elastic Endgame<=3.62.2
Elastic Endpoint Security<7.17.7
Elastic Endpoint Security>=8.0.0<8.4.0
Microsoft Windows
All of the following
Any of the following
Elastic Endgame<=3.62.2
Elastic Endpoint Security<7.17.7
Elastic Endpoint Security>=8.0.0<8.4.0
Microsoft Windows
Event History
Jan 24, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2022-38774.
2
What is the severity rating of CVE-2022-38774?
CVE-2022-38774 has a severity rating of 7.8 (high).
3
What software is affected by CVE-2022-38774?
Elastic Endpoint Security (versions up to 7.17.7 and between 8.0.0 and 8.4.0) and Elastic Endgame (version up to 3.62.2) for Windows are affected by CVE-2022-38774.
4
What is the impact of CVE-2022-38774?
CVE-2022-38774 allows unprivileged users to elevate their privileges to those of the LocalSystem account.
5
Are Microsoft Windows systems vulnerable to CVE-2022-38774?
No, Microsoft Windows systems are not vulnerable to CVE-2022-38774.