CVE-2023-27247

Cynet Client Agent v4.6.0.8010 allows attackers with Administrator rights to disable the EDR functions by disabling process privilege tokens.
Configurations

Configuration 1 (hide)

cpe:2.3:a:cynet:client_agent:4.6.0.8010:*:*:*:*:*:*:*

History

18 Feb 2025, 21:15

Type Values Removed Values Added
CWE CWE-250

21 Nov 2024, 07:52

Type Values Removed Values Added
References () https://github.com/NF-Security-Team/CVEs/blob/main/CVE-Cynet/Readme.md - Exploit, Third Party Advisory () https://github.com/NF-Security-Team/CVEs/blob/main/CVE-Cynet/Readme.md - Exploit, Third Party Advisory
References () https://github.com/advisories/GHSA-hmjw-7429-p2vc - () https://github.com/advisories/GHSA-hmjw-7429-p2vc -

12 Apr 2023, 15:15

Type Values Removed Values Added
References
  • (MISC) https://github.com/advisories/GHSA-hmjw-7429-p2vc -

04 Apr 2023, 16:25

Type Values Removed Values Added
CWE NVD-CWE-noinfo
First Time Cynet client Agent
Cynet
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 4.4
References (MISC) https://github.com/NF-Security-Team/CVEs/blob/main/CVE-Cynet/Readme.md - (MISC) https://github.com/NF-Security-Team/CVEs/blob/main/CVE-Cynet/Readme.md - Exploit, Third Party Advisory
CPE cpe:2.3:a:cynet:client_agent:4.6.0.8010:*:*:*:*:*:*:*

29 Mar 2023, 14:15

Type Values Removed Values Added
Summary An issue in Cynet Client Agent v4.6.0.8010 allows attackers with Administrator rights to disable the EDR functions via disabling process privilege tokens. Cynet Client Agent v4.6.0.8010 allows attackers with Administrator rights to disable the EDR functions by disabling process privilege tokens.

28 Mar 2023, 19:19

Type Values Removed Values Added
New CVE

Information

Published : 2023-03-28 18:15

Updated : 2025-02-18 21:15


NVD link : CVE-2023-27247

Mitre link : CVE-2023-27247

CVE.ORG link : CVE-2023-27247


JSON object : View

Products Affected

cynet

  • client_agent
CWE
NVD-CWE-noinfo CWE-250

Execution with Unnecessary Privileges