216.73.216.82

CVE-2024-13861

· Published 11/04/2025 13:15 · Modified 11/04/2025 15:39

Labels: CVE-2024-13861 2025-04-11CVE-2024-13861CWE-732[email protected]

Essential information

Published
11/04/2025 13:15
Modified
11/04/2025 15:39
Author
Creator
CVSS
7.8 HIGH (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CVSS metrics

Description

A code injection vulnerability in the Debian package component of Taegis Endpoint Agent (Linux) versions older than 1.3.10 allows local users arbitrary code execution as root. Redhat-based systems using RPM packages are not affected.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
sophos / taegis endpoint agent cpe:2.3:a:sophos:taegis_endpoint_agent:<1.3.10:*:*:*:*:*:*:*

References