216.73.217.22

CVE-2025-37735

· Published 06/11/2025 15:15 · Modified 06/11/2025 19:45

Labels: CVE-2025-37735 2025-11-06CVE-2025-37735CWE-281[email protected][email protected]

Essential information

Published
06/11/2025 15:15
Modified
06/11/2025 19:45
Author
Creator
CVSS
7.0 HIGH (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

CVSS metrics

Description

Improper preservation of permissions in Elastic Defend on Windows hosts can lead to arbitrary files on the system being deleted by the Defend service running as SYSTEM. In some cases, this could result in local privilege escalation.

NVD status

Status
Awaiting Analysis — CVE has been marked for Analysis. Normally once in this state the CVE will be analyzed by NVD staff within 24 hours.
Source
[email protected]
NVD
View on NVD

References