cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2022-38777,https://securityvulnerability.io/vulnerability/CVE-2022-38777,Privilege Escalation in Elastic Endpoint Security for Windows,"A vulnerability exists in the rollback feature of Elastic Endpoint Security for Windows. This issue could potentially enable unprivileged users to escalate their privileges, gaining access to the LocalSystem account. Such unauthorized elevation poses significant risks, allowing attackers to execute arbitrary commands and gain control over critical system functions.",Elastic,Elastic Endpoint Security,7.8,HIGH,0.0004400000034365803,false,,false,false,false,,,false,false,,2023-02-08T00:00:00.000Z,0 CVE-2022-38774,https://securityvulnerability.io/vulnerability/CVE-2022-38774,Privilege Escalation Vulnerability in Elastic Endpoint Security by Elastic,"A security flaw in the quarantine feature of Elastic Endpoint Security and Elastic Endgame for Windows could be exploited by unprivileged users to gain elevated privileges, potentially allowing them to operate with the same permissions as the LocalSystem account. This vulnerability emphasizes the importance of securing access controls to prevent unauthorized privilege escalation.",Elastic,Elastic Endpoint Security And Elastic Endgame Security,7.8,HIGH,0.0004400000034365803,false,,false,false,false,,,false,false,,2023-01-26T21:15:00.000Z,0 CVE-2022-38775,https://securityvulnerability.io/vulnerability/CVE-2022-38775,Privilege Escalation Vulnerability in Elastic Endpoint Security for Windows,"A vulnerability was identified in the rollback feature of Elastic Endpoint Security for Windows, allowing unprivileged users to gain elevated privileges, potentially giving them control over sensitive system functions as if they were the LocalSystem account. This poses a significant risk for organizations relying on this software for endpoint protection, as it could be exploited to perform unauthorized actions and compromise system integrity.",Elastic,Elastic Endpoint Security,7.8,HIGH,0.0004400000034365803,false,,false,false,false,,,false,false,,2023-01-26T21:15:00.000Z,0 CVE-2022-23714,https://securityvulnerability.io/vulnerability/CVE-2022-23714,Local Privilege Escalation in Elastic Endpoint Security for Windows,"A local privilege escalation vulnerability has been identified within the ransomware canaries feature of Elastic Endpoint Security for Windows. This issue could potentially enable unauthorized users to escalate their privileges to the LocalSystem account, compromising system security and potentially leading to further unauthorized actions within the system.",Elastic,Endpoint Security,7.8,HIGH,0.0004199999966658652,false,,false,false,false,,,false,false,,2022-07-06T13:57:27.000Z,0