CVE-2024-0259: Privilege Escalation in Robot Schedule Enterprise Agent for Windows prior to version 3.04
Fortra's Robot Schedule Enterprise Agent for Windows prior to version 3.04 is susceptible to privilege escalation. A low-privileged user can overwrite the service executable. When the service is restarted, the replaced binary runs with local system privileges, allowing a low-privileged user to gain elevated privileges.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-0259?
CVE-2024-0259 has a low severity rating, indicating a moderate risk associated with privilege escalation.
How do I fix CVE-2024-0259?
To fix CVE-2024-0259, upgrade the Fortra Robot Schedule Enterprise Agent to version 3.04 or later.
Who is affected by CVE-2024-0259?
CVE-2024-0259 affects users of Fortra's Robot Schedule Enterprise Agent for Windows prior to version 3.04.
What type of vulnerability is CVE-2024-0259?
CVE-2024-0259 is a privilege escalation vulnerability that allows low-privileged users to overwrite a service executable.
What happens if CVE-2024-0259 is exploited?
If exploited, CVE-2024-0259 allows a low-privileged user to run a malicious executable with local system privileges.