Direct Inward Dialing: +1 408 916 9892
Vulnerability details | |
Severity | Medium |
CVE ID | CVE-2024-36037 |
Affected software versions | All ADAudit Plus builds below 7270 |
Fixed version | Build 7270 |
Fixed on | December 29, 2023 |
A vulnerability in ADAudit Plus due to insufficient access control enforcement on the session recording storage folder on agent-installed machines has been fixed.
This vulnerability could allow an insider with an authenticated session to view the recorded session data of other users on the affected machine.
Update your ADAudit Plus instance to the latest build — 7270 — using the service pack.
This issue was reported by Andreas from Shelltrail.
Please contact support@adauditplus.com for more details.