First published: Thu Nov 07 2024(Updated: )
Improper Privilege Management vulnerability in WatchGuard EPDR, Panda AD360 and Panda Dome on Windows (PSANHost.exe module) allows arbitrary file delete with SYSTEM permissions. This issue affects EPDR: before 8.00.23.0000; Panda AD360: before 8.00.23.0000; Panda Dome: before 22.03.00.
Credit: 5d1c2695-1a31-4499-88ae-e847036fd7e3
Affected Software | Affected Version | How to fix |
---|---|---|
WatchGuard Endpoint Protection and Detection Response (EPDR) | <8.00.23.0000 | |
Panda AD360 | <8.00.23.0000 | |
Panda Dome | <22.03.00 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-8424 is considered a critical vulnerability due to its impact on unauthorized file deletion with SYSTEM privileges.
To mitigate CVE-2024-8424, upgrade WatchGuard EPDR to version 8.00.23.0000 or later.
Panda AD360 versions prior to 8.00.23.0000 are affected by CVE-2024-8424.
CVE-2024-8424 involves improper privilege management that allows arbitrary file deletion.
CVE-2024-8424 typically requires local access to exploit the privilege escalation and perform arbitrary file deletions.