Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-47529


Insecure Win32 memory objects in Endpoint Windows Agents in RSA NetWitness Platform before 12.2 allow local and admin Windows user accounts to modify the endpoint agent service configuration: to either disable it completely or run user-supplied code or commands, thereby bypassing tamper-protection features via ACL modification.


Published

2023-03-28T13:15:07.087

Last Modified

2024-11-21T07:32:09.307

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 6.7 (MEDIUM)

Weaknesses
  • Type: Primary
    NVD-CWE-Other

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application rsa netwitness < 12.2 Yes

References