Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-26236


An issue was discovered in WatchGuard EPDR 8.0.21.0002. Due to a weak implementation of message handling between WatchGuard EPDR processes, it is possible to perform a Local Privilege Escalation on Windows by sending a crafted message to a named pipe.


Published

2023-10-05T01:15:10.137

Last Modified

2024-11-21T07:50:57.300

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.8 (HIGH)

Weaknesses
  • Type: Primary
    NVD-CWE-noinfo
  • Type: Secondary
    CWE-269

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System watchguard epp_firmware < 8.00.22.0010 Yes
Hardware watchguard epp - No
Operating System watchguard edr_firmware < 8.00.22.0010 Yes
Hardware watchguard edr - No
Operating System watchguard epdr_firmware < 8.00.22.0010 Yes
Hardware watchguard epdr - No
Operating System watchguard panda_ad360_firmware < 8.00.22.0010 Yes
Hardware watchguard panda_ad360 - No

References