CVE-2023-26078
CVSS 3.1 Score 7.8 of 10 (high)
Details
Published Jul 24, 2023
Updated: Aug 1, 2023
Summary
CVE-2023-26078 is a newly disclosed privilege escalation vulnerability that affects versions 1.8.4.4 and older of Atera Agent on Windows systems. The issue arises due to the inappropriate handling of privileged APIs, allowing an attacker to elevate their privileges within the system. Successful exploitation could result in significant unintended consequences, including data theft or the installation of malicious software. Organizations running these affected versions of Atera Agent are urged to apply the latest patches to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Vendors
- Atera