Vulnerability Description
Insecure Permissions vulnerability in Forescout SecureConnector v.11.3.06.0063 allows a local attacker to escalate privileges via the Recheck Compliance Status component.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Forescout | Secureconnector | 11.3.06.0063 |
Related Weaknesses (CWE)
References
- https://gist.github.com/Hagrid29/aea0dc35a1e87813dbbb7b317853d023Third Party Advisory
- https://github.com/Hagrid29/ForeScout-SecureConnector-EoPExploitVendor Advisory
- https://www.forescout.com/Product
- https://gist.github.com/Hagrid29/aea0dc35a1e87813dbbb7b317853d023Third Party Advisory
- https://github.com/Hagrid29/ForeScout-SecureConnector-EoPExploitVendor Advisory
- https://www.forescout.com/Product
FAQ
What is CVE-2024-22795?
CVE-2024-22795 is a vulnerability with a CVSS score of 7.0 (HIGH). Insecure Permissions vulnerability in Forescout SecureConnector v.11.3.06.0063 allows a local attacker to escalate privileges via the Recheck Compliance Status component.
How severe is CVE-2024-22795?
CVE-2024-22795 has been rated HIGH with a CVSS base score of 7.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2024-22795?
Check the references section above for vendor advisories and patch information. Affected products include: Forescout Secureconnector.