Directory Traversal Vulnerability in OSSEC Agent on Windows

Directory Traversal Vulnerability in OSSEC Agent on Windows

CVE-2018-19666 · HIGH Severity

AV:L/AC:L/AU:N/C:C/I:C/A:C

The agent in OSSEC through 3.1.0 on Windows allows local users to gain NT AUTHORITY\SYSTEM access via Directory Traversal by leveraging full access to the associated OSSEC server.

Learn more about our Cis Benchmark Audit For Server Software.