An issue was discovered in the rollback feature of Elastic Endpoint Security for Windows, which could allow unprivileged users to elevate their privileges to those of the LocalSystem account.
2023-02-08T21:15:10.503
2025-03-25T15:15:14.447
Modified
CVSSv3.1: 7.8 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | elastic | endgame | < 3.62.3 | Yes |
Application | elastic | endpoint_security | < 7.17.9 | Yes |
Application | elastic | endpoint_security | < 8.5.0 | Yes |
Operating System | microsoft | windows | - | No |