Rapid7 InsightIDR Windows Agent CVE-2019-5629 DLL Loading Local Privilege Escalation Vulnerability
BID:109316
Info
Rapid7 InsightIDR Windows Agent CVE-2019-5629 DLL Loading Local Privilege Escalation Vulnerability
| Bugtraq ID: | 109316 |
| Class: | Design Error |
| CVE: |
CVE-2019-5629 |
| Remote: | No |
| Local: | Yes |
| Published: | May 29 2019 12:00AM |
| Updated: | May 29 2019 12:00AM |
| Credit: | Florian Bogner |
| Vulnerable: |
Rapid7 Insight Agent 2.6.3 Rapid7 Insight Agent 2.6.2 Rapid7 Insight Agent 2.6.1 Rapid7 Insight Agent 2.6 Rapid7 Insight Agent 2.5.3 Rapid7 Insight Agent 2.5.2 Rapid7 Insight Agent 2.5.1 Rapid7 Insight Agent 2.5 Rapid7 Insight Agent 2.4.1 Rapid7 Insight Agent 2.4 Rapid7 Insight Agent 2.3 Rapid7 Insight Agent 2.2 Rapid7 Insight Agent 2.1 Rapid7 Insight Agent 2.0 |
| Not Vulnerable: |
Rapid7 Insight Agent 2.6.5 |
Discussion
Rapid7 InsightIDR Windows Agent CVE-2019-5629 DLL Loading Local Privilege Escalation Vulnerability
Rapid7 InsightIDR Windows Agent is prone to a local privilege-escalation vulnerability.
A local attacker can exploit this issue to gain elevated privileges.
Rapid7 InsightIDR Windows Agent versions 2.6.3 and prior are vulnerable.
Rapid7 InsightIDR Windows Agent is prone to a local privilege-escalation vulnerability.
A local attacker can exploit this issue to gain elevated privileges.
Rapid7 InsightIDR Windows Agent versions 2.6.3 and prior are vulnerable.
Exploit / POC
Rapid7 InsightIDR Windows Agent CVE-2019-5629 DLL Loading Local Privilege Escalation Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Rapid7 InsightIDR Windows Agent CVE-2019-5629 DLL Loading Local Privilege Escalation Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
Rapid7 InsightIDR Windows Agent CVE-2019-5629 DLL Loading Local Privilege Escalation Vulnerability
References:
References: