Medium severity6.7NVD Advisory· Published Mar 28, 2023· Updated Jun 17, 2026
CVE-2022-47529
CVE-2022-47529
Description
Insecure Win32 memory objects in Endpoint Windows Agents in RSA NetWitness Platform before 12.2 allow local and admin Windows user accounts to modify the endpoint agent service configuration: to either disable it completely or run user-supplied code or commands, thereby bypassing tamper-protection features via ACL modification.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- RSA NetWitness Platform/Endpoint Windows Agentsdescription
- Range: <12.2
Patches
Vulnerability mechanics
References
7- seclists.org/fulldisclosure/2023/Mar/26nvdExploitMailing ListThird Party Advisory
- hyp3rlinx.altervista.org/advisories/RSA_NETWITNESS_EDR_AGENT_INCORRECT_ACCESS_CONTROL_CVE-2022-47529.txtnvdExploitThird Party Advisory
- packetstormsecurity.com/files/171476/RSA-NetWitness-Endpoint-EDR-Agent-12.x-Incorrect-Access-Control-Code-Execution.htmlnvdExploitThird Party AdvisoryVDB Entry
- seclists.org/fulldisclosure/2023/Mar/16nvdMailing ListThird Party Advisory
- twitter.com/hyp3rlinx/status/1639335477839790105nvdThird Party Advisory
- community.netwitness.com/t5/netwitness-platform-security/nw-2023-04-netwitness-platform-security-advisory-cve-2022-47529/ta-p/696935nvdPermissions Required
- seclists.org/fulldisclosure/2024/Apr/17nvd
News mentions
0No linked articles in our index yet.