7
CVE-2026-83597
- EPSS 0.14%
- Veröffentlicht 22.09.2026 17:06:58
- Zuletzt bearbeitet 23.09.2026 18:28:25
- Erkennungen
Netdata: Local Privilege Escalation in Netdata Windows Agent installer via MSI Repair Execution
Netdata is an open source observability tool. From version 2.0.0 until 2.10.4, Netdata Windows Agent MSI repair launches powershell.exe and wevtutil.exe as elevated interactive processes in the initiating user's desktop session. A low-privileged local user who triggers repair can interact with or hijack those visible process windows to execute arbitrary commands with SYSTEM privileges. This issue is fixed in stable version 2.10.4.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
Herstellernetdata
≫
Produkt
netdata
Version
>= 2.0.0, < 2.10.4
Status
affected
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.14% | 0.037 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| security-advisories@github.com | 7 | 1 | 5.9 |
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
|
CWE-269 Improper Privilege Management
The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.
https://github.com/netdata/netdata/pull/22751
https://github.com/netdata/netdata/commit/d762782697623a98b51b4e41f7fe2d12404f0662
https://github.com/netdata/netdata/releases/tag/v2.10.4
https://github.com/netdata/netdata/security/advisories/GHSA-jmv4-pq25-crvv