The Agent Update System in ConnectWise Automate before 2020.8 allows Privilege Escalation because the _LTUPDATE folder has weak permissions.
The product specifies permissions for a security-critical resource in a way that allows that resource to be read or modified by unintended actors.
Link | Tags |
---|---|
https://www.connectwise.com/company/trust/security-bulletins | third party advisory |
https://dbeta.com/2020/10/05/PrivilegeEscalationInAutomateAgent | third party advisory |