Vulnerability Details CVE-2024-0259
Fortra's Robot Schedule Enterprise Agent for Windows prior to version 3.04 is susceptible to privilege escalation. A low-privileged user can overwrite the service executable. When the service is restarted, the replaced binary runs with local system privileges, allowing a low-privileged user to gain elevated privileges.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 31.1%
CVSS Severity
CVSS v3 Score 7.3
Products affected by CVE-2024-0259
-
cpe:2.3:a:fortra:robot_schedule:1.24
-
cpe:2.3:a:fortra:robot_schedule:1.26
-
cpe:2.3:a:fortra:robot_schedule:1.27
-
cpe:2.3:a:fortra:robot_schedule:1.28
-
cpe:2.3:a:fortra:robot_schedule:1.29
-
cpe:2.3:a:fortra:robot_schedule:1.30
-
cpe:2.3:a:fortra:robot_schedule:1.31
-
cpe:2.3:a:fortra:robot_schedule:1.32
-
cpe:2.3:a:fortra:robot_schedule:1.33
-
cpe:2.3:a:fortra:robot_schedule:1.34
-
cpe:2.3:a:fortra:robot_schedule:1.35
-
cpe:2.3:a:fortra:robot_schedule:1.37
-
cpe:2.3:a:fortra:robot_schedule:1.38
-
cpe:2.3:a:fortra:robot_schedule:1.39
-
cpe:2.3:a:fortra:robot_schedule:1.40
-
cpe:2.3:a:fortra:robot_schedule:1.41
-
cpe:2.3:a:fortra:robot_schedule:1.42
-
cpe:2.3:a:fortra:robot_schedule:1.43
-
cpe:2.3:a:fortra:robot_schedule:2.0
-
cpe:2.3:a:fortra:robot_schedule:2.01
-
cpe:2.3:a:fortra:robot_schedule:2.02
-
cpe:2.3:a:fortra:robot_schedule:2.03
-
cpe:2.3:a:fortra:robot_schedule:2.04
-
cpe:2.3:a:fortra:robot_schedule:3.00
-
cpe:2.3:a:fortra:robot_schedule:3.02
-
cpe:2.3:a:fortra:robot_schedule:3.03
-
cpe:2.3:o:microsoft:windows:-