📦

endpoint

Vendor: k7computing

Actively Exploited 0 CISA KEV List
PoC / Exploits 0 Code Available
Total RCEs 7 Remote Access
Total CVEs 10 Total Indexed
Avg. EPSS 0.30% Exploit Prob.
Latest CVE CVE-2023-46668 Oct 26

Security Vulnerability Index

Page 1 / 1
4.6 CVSS

If Elastic Endpoint (v7.9.0 - v8.10.3) is configured to use a non-default option in which the logging level is explicitly set to debug, and when Elastic Agent is simultaneously configured to collect and send those logs to Elasticsearch, then Elastic Agent API keys can be viewed in Elasticsearch in plaintext. These API keys could be used to write arbitrary data and read Elastic Endpoint user artifacts.

EPSS: 0.35%
6.7 CVSS

PCProtect Endpoint prior to v5.17.470 for Microsoft Windows lacks tamper protection, allowing authenticated attackers with Administrator privileges to modify processes within the application and escalate privileges to SYSTEM via a crafted executable.

EPSS: 0.30%
5.5 CVSS

In K7 Antivirus Premium before 15.1.0.53, user-controlled input to the K7Sentry device is not sufficiently authenticated: a local user with a LOW integrity process can access a raw hard disk by sending a specific IOCTL.

EPSS: 0.29%
7.0 CVSS

K7 Antivirus Premium before 15.1.0.53 allows local users to gain privileges by sending a specific IOCTL after setting the memory in a particular way.

EPSS: 0.27%
5.5 CVSS

In K7 Antivirus Premium before 15.1.0.53, user-controlled input can be used to allow local users to write to arbitrary memory locations.

EPSS: 0.27%
7.0 CVSS

K7 Antivirus Premium before 15.1.0.53 allows local users to gain privileges by sending a specific IOCTL after setting the memory in a particular way.

EPSS: 0.27%
7.8 CVSS

K7 Antivirus Premium before 15.1.0.53 allows local users to write to arbitrary memory locations, and consequently gain privileges, via a specific set of IOCTL calls.

EPSS: 0.33%
7.0 CVSS

K7 Antivirus Premium before 15.1.0.53 allows local users to gain privileges by sending a specific IOCTL after setting the memory in a particular way.

EPSS: 0.27%
7.8 CVSS

K7 Antivirus Premium before 15.1.0.53 allows local users to write to arbitrary memory locations, and consequently gain privileges, via a specific set of IOCTL calls.

EPSS: 0.33%
7.0 CVSS

K7 Antivirus Premium before 15.1.0.53 allows local users to gain privileges by sending a specific IOCTL after setting the memory in a particular way.

EPSS: 0.27%