CVE-2022-43997

Incorrect access control in Aternity agent in Riverbed Aternity before 12.1.4.27 allows for local privilege escalation. There is an insufficiently protected handle to the A180AG.exe SYSTEM process with PROCESS_ALL_ACCESS rights.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:aternity:aternity:*:*:*:*:*:*:*:*

History

01 Apr 2025, 16:15

Type Values Removed Values Added
CWE CWE-269

21 Nov 2024, 07:27

Type Values Removed Values Added
Summary
  • (es) El control de acceso incorrecto en el agente de Aternity en Riverbed Aternity antes de 12.1.4.27 permite la escalada de privilegios locales. Hay un identificador insuficientemente protegido para el proceso del SYSTEM A180AG.exe con derechos PROCESS_ALL_ACCESS.
References () https://gist.github.com/jackullrich/21fcfe75aeb5e18c60b80e684b83d741 - Exploit, Third Party Advisory () https://gist.github.com/jackullrich/21fcfe75aeb5e18c60b80e684b83d741 - Exploit, Third Party Advisory
References () https://winternl.com/cve-2022-43997/ - Exploit, Third Party Advisory () https://winternl.com/cve-2022-43997/ - Exploit, Third Party Advisory

Information

Published : 2023-01-26 21:17

Updated : 2025-04-01 16:15


NVD link : CVE-2022-43997

Mitre link : CVE-2022-43997

CVE.ORG link : CVE-2022-43997


JSON object : View

Products Affected

aternity

  • aternity
CWE
NVD-CWE-Other CWE-269

Improper Privilege Management