CVE-2023-26603 Information
Apr 30, 2024
cve
Description
JumpCloud Agent before 1.178.0 Creates a Temporary File in a Directory with Insecure Permissions. This allows privilege escalation to SYSTEM via a repair action in the installer.
Reference
https://community.jumpcloud.com/t5/jumpcloud-product-news/bd-p/releases https://github.com/mandiant/Vulnerability-Disclosures/blob/master/2024/MNDT-2024-0003.md
Share on: