Home
HIGH: 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HDefault status
unaffected
Any version before 1.3.10
affected
Description
A code injection vulnerability in the Debian package component of Taegis Endpoint Agent (Linux) versions older than 1.3.10 allows local users arbitrary code execution as root. Redhat-based systems using RPM packages are not affected.
Problem types
CWE-732 Incorrect Permission Assignment for Critical Resource
Product status
Any version before 1.3.10
References
www.sophos.com/...sories/sophos-sa-20250411-taegis-agent-lpe
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.