This document will explain you about the vulnerability reported by Abdullah AlJaber, which allows unauthorised user, whose computer is installed with the Agent to access command prompt using system account.
| Vulnerabilities | Fix Released on |
|---|---|
| CVE-2018-13411, CVE-2018-13412 | 23-Aug-2018 |
Unauthorised users, whose computer is installed with Endpoint Central MSP Agent were able to access command prompt using system account.
This has been identified and fixed on 23-Aug-2018. To apply this fix, follow the below steps:
Keywords: Security Updates, Vulnerabilities and Fixes.