CVE-2023-31497: High severity seqrite end point security vulnerability
Published May 11, 2023
·Updated
Incorrect access control in Quick Heal Technologies Limited Seqrite Endpoint Security (EPS) all versions prior to v8.0 allows attackers to escalate privileges to root via supplying a crafted binary to the target system.
Affected Software
1 affected component
Seqrite End Point Security<8.0
Event History
May 11, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2023-31497?
CVE-2023-31497 is considered a critical vulnerability due to its potential for privilege escalation to root.
2
How do I fix CVE-2023-31497?
To fix CVE-2023-31497, users should upgrade to Seqrite Endpoint Security version 8.0 or later.
3
Who is affected by CVE-2023-31497?
CVE-2023-31497 affects all versions of Seqrite Endpoint Security prior to v8.0.
4
What type of vulnerability is CVE-2023-31497?
CVE-2023-31497 is an incorrect access control vulnerability that allows attackers to escalate privileges.
5
Can CVE-2023-31497 be exploited remotely?
Yes, CVE-2023-31497 can be exploited locally by attackers who supply a crafted binary to the target system.