CVE-2019-17445: Eracent Eda Agent
Medium severity, CVSS 5.5. EPSS: 0.3% chance of exploitation in the next 30 days.
An issue was discovered in Eracent EDA, EPA, EPM, EUA, FLW, and SUM Agent through 10.2.26. The agent executable, when installed for non-root operations (scanning), can be forced to copy files from the filesystem to other locations via Symbolic Link Following.
Affected products
- Eracent Eda Agent: up to and including 10.2.26
- Eracent Epa Agent: up to and including 10.2.26
- Eracent EPM Agent: up to and including 10.2.26
- Eracent Eua Agent: up to and including 10.2.26
- Eracent Flw Agent: up to and including 10.2.26
- Eracent Sum Agent: up to and including 10.2.26
Published 2019-11-22. Last modified 2026-06-17.