Vulnerability Description
Cybereason EDR version 19.1.282 and above, 19.2.182 and above, 20.1.343 and above, and 20.2.X and above has a DLL hijacking vulnerability, which could allow a local attacker to execute code with elevated privileges.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Cybereason | Endpoint Detection And Response | < 19.1.282 |
Related Weaknesses (CWE)
References
- http://cybereason.comVendor Advisory
- http://endpoint.comNot Applicable
- https://www.cybereason.com/cybereason-vulnerability-disclosureVendor Advisory
- http://cybereason.comVendor Advisory
- http://endpoint.comNot Applicable
- https://www.cybereason.com/cybereason-vulnerability-disclosureVendor Advisory
FAQ
What is CVE-2020-25502?
CVE-2020-25502 is a vulnerability with a CVSS score of 7.8 (HIGH). Cybereason EDR version 19.1.282 and above, 19.2.182 and above, 20.1.343 and above, and 20.2.X and above has a DLL hijacking vulnerability, which could allow a local attacker to execute code with eleva...
How severe is CVE-2020-25502?
CVE-2020-25502 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-25502?
Check the references section above for vendor advisories and patch information. Affected products include: Cybereason Endpoint Detection And Response.