Netwrix Auditor 서버와 모니터링 대상 시스템에 설치된 에이전트 모두에 영향을 미치는 Netwrix Auditor User Activity Video Recording 구성 요소에 원격 코드 실행 취약점이 존재합니다. 이 원격 코드 실행 취약점은 해당 구성 요소에서 사용하는 기반 프로토콜에 존재하며, 인증되지 않은 원격 공격자가 Netwrix Auditor가 모니터링하는 시스템을 포함한 영향받는 시스템에서 NT AUTHORITY\SYSTEM 사용자 권한으로 임의 코드를 실행할 수 있게 할 가능성이 있습니다.
Netwrix Auditor 서버와 모니터링 대상 시스템에 설치된 에이전트 모두에 영향을 미치는 Netwrix Auditor User Activity Video Recording 구성 요소에 원격 코드 실행 취약점이 존재합니다. 이 원격 코드 실행 취약점은 해당 구성 요소에서 사용하는 기반 프로토콜에 존재하며, 인증되지 않은 원격 공격자가 Netwrix Auditor가 모니터링하는 시스템을 포함한 영향받는 시스템에서 NT AUTHORITY\SYSTEM 사용자 권한으로 임의 코드를 실행할 수 있게 할 가능성이 있습니다.
한국어 설명은 영문 원문을 기준으로 제공됩니다. 제품명·버전·보안 식별자는 아래 원문과 함께 확인할 수 있습니다.
영문 원문 보기
Remote code execution vulnerabilities exist in the Netwrix Auditor User Activity Video Recording component affecting both the Netwrix Auditor server and agents installed on monitored systems. The remote code execution vulnerabilities exist within the underlying protocol used by the component, and potentially allow an unauthenticated remote attacker to execute arbitrary code as the NT AUTHORITY\SYSTEM user on affected systems, including on systems Netwrix Auditor monitors.