CVE-2022-38774
Summary
| CVE | CVE-2022-38774 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-01-26 21:15:00 UTC |
| Updated | 2023-02-03 18:21:00 UTC |
| Description | An issue was discovered in the quarantine feature of Elastic Endpoint Security and Elastic Endgame for Windows, which could allow unprivileged users to elevate their privileges to those of the LocalSystem account. |
Risk And Classification
Problem Types: NVD-CWE-noinfo
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Endpoint Security 8.4.0/7.17.7 and Endgame 3.62.3 Security Statement - Security Announcements - Discuss the Elastic Stack | MISC | discuss.elastic.co | |
| www.elastic.co/community/security | MISC | www.elastic.co | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.