CVE-2024-36074: Code Injection
Netwrix CoSoSys Endpoint Protector through 5.9.3 and CoSoSys Unify through 7.0.6 contain a remote code execution vulnerability in the Endpoint Protector and Unify agent in the way that the EasyLock dependency is acquired from the server. An attacker with administrative access to the Endpoint Protector or Unify server can cause a client to acquire and execute a malicious file resulting in remote code execution.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-36074?
CVE-2024-36074 is classified as a critical vulnerability due to its potential for remote code execution.
How do I fix CVE-2024-36074?
To fix CVE-2024-36074, upgrade to Netwrix CoSoSys Endpoint Protector version 5.9.4 or later, and CoSoSys Unify version 7.0.7 or later.
What software is affected by CVE-2024-36074?
CVE-2024-36074 affects Netwrix CoSoSys Endpoint Protector up to version 5.9.3 and CoSoSys Unify up to version 7.0.6.
Can CVE-2024-36074 be exploited remotely?
Yes, CVE-2024-36074 can be exploited remotely by an attacker with administrative access.
What actions should be taken if CVE-2024-36074 is found in my environment?
If CVE-2024-36074 is found, it is imperative to apply the necessary software updates immediately to mitigate the risk.