CVE-2022-38777: High severity elastic vulnerability
An issue was discovered in the rollback feature of Elastic Endpoint Security for Windows, which could allow unprivileged users to elevate their privileges to those of the LocalSystem account.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-38777?
CVE-2022-38777 is an issue discovered in the rollback feature of Elastic Endpoint Security for Windows, which could allow unprivileged users to elevate their privileges to those of the LocalSystem account.
What software is affected by CVE-2022-38777?
Elastic Endgame versions up to 3.62.3, Elastic Endpoint Security versions up to 7.17.9, and Elastic Endpoint Security versions between 8.0.0 and 8.5.0 are affected.
What is the severity of CVE-2022-38777?
CVE-2022-38777 has a severity rating of 7.8, which is considered high.
How can an attacker exploit CVE-2022-38777?
CVE-2022-38777 can be exploited by unprivileged users to elevate their privileges to those of the LocalSystem account.
Are there any security updates available for CVE-2022-38777?
Yes, security updates are available. Please refer to the reference URLs provided for more information.