GHSA-j8x2-2m5w-j939
HIGHCVE-2022-23511A privilege escalation issue exists within the Amazon CloudWatch Agent for Windows in versions up to and including v1.247354. When users trigger a repair of the Agent, a pop-up window opens with SYSTEM permissions. Users with administrative access to affected hosts may use this to create a new command prompt as NT AUTHORITY\SYSTEM.
- Affected
- < 1.247355.0
- Fixed in
- 1.247355.0
- Weakness
- CWE-274
- Published
- 2022-12-12
- Source
- github