High
CVSS 7.8
Overview
An unauthenticated Named Pipe channel in Controlup Real-Time Agent (cuAgent.exe) before 8.5 potentially allows an attacker to run OS commands via the ProcessActionRequest WCF method.
An unauthenticated Named Pipe channel in Controlup Real-Time Agent (cuAgent.exe)...
An unauthenticated Named Pipe channel in Controlup Real-Time Agent (cuAgent.exe) before 8.5 potentially allows an attacker to run OS commands via the ProcessActionRequest WCF method.
This vulnerability is rated 🟠 HIGH.
Recommended actions: