First published: Tue Jan 24 2023(Updated: )
An issue was discovered in the rollback feature of Elastic Endpoint Security for Windows, which could allow unprivileged users to elevate their privileges to those of the LocalSystem account.
Credit: bressers@elastic.co
Affected Software | Affected Version | How to fix |
---|---|---|
Elastic Endpoint Security | <8.4.1 | |
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-38775 is an issue discovered in the rollback feature of Elastic Endpoint Security for Windows which could allow unprivileged users to elevate their privileges to those of the LocalSystem account.
Elastic Endpoint Security version up to 8.4.1 for Windows is affected by CVE-2022-38775.
CVE-2022-38775 has a severity rating of high (7.8).
To fix CVE-2022-38775, it is recommended to update Elastic Endpoint Security to a version that is not vulnerable.
More information about CVE-2022-38775 can be found at the following references: [1](https://discuss.elastic.co/t/endpoint-security-8-4-1-security-statement/323753), [2](https://www.elastic.co/community/security).