CVE-2024-36072: Critical severity cososys endpoint protector vulnerability
Netwrix CoSoSys Endpoint Protector through 5.9.3 and CoSoSys Unify through 7.0.6 contain a remote code execution vulnerability in the logging component of the Endpoint Protector and Unify server application which allows an unauthenticated remote attacker to send a malicious request, resulting in the ability to execute system commands with root privileges.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-36072?
CVE-2024-36072 is classified as a high severity vulnerability due to its potential for remote code execution.
How do I fix CVE-2024-36072?
To mitigate CVE-2024-36072, you should update Netwrix CoSoSys Endpoint Protector to version 5.9.4 or later and CoSoSys Unify to version 7.0.7 or later.
Who is affected by CVE-2024-36072?
CVE-2024-36072 affects users of Netwrix CoSoSys Endpoint Protector through version 5.9.3 and CoSoSys Unify through version 7.0.6.
What type of vulnerability is CVE-2024-36072?
CVE-2024-36072 is a remote code execution vulnerability located in the logging component of the affected applications.
Can CVE-2024-36072 be exploited remotely?
Yes, CVE-2024-36072 allows unauthenticated remote attackers to exploit the vulnerability by sending a malicious request.