Direct Inward Dialing: +1 408 916 9892
| Vulnerability details | |
| Severity | Medium |
| CVE ID | CVE-2024-36036 |
| Affected software versions | All ADAudit Plus builds below 7270 |
| Fixed version | Build 7270 |
| Fixed on | December 29, 2023 |
A vulnerability due to insufficient access control enforcement on ADAudit Plus' agent configuration data managed in registry has been fixed.
This vulnerability could allow a malicious insider to send a crafted, authenticated RPC request and modify the affected machine's agent configuration.
Update your ADAudit Plus instance to the latest build — 7270 — using the service pack.
This issue was reported by Andreas from Shelltrail.
Please contact support@adauditplus.com for more details.