Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-8996


Unquoted Search Path or Element vulnerability in Grafana Agent (Flow mode) on Windows allows Privilege Escalation from Local User to SYSTEM This issue affects Agent Flow: before 0.43.2


Published

2024-09-25T17:15:19.567

Last Modified

2024-10-01T19:16:02.793

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 7.3 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-428
  • Type: Primary
    CWE-428

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application grafana agent < 0.43.2 Yes
Operating System microsoft windows - No

References