CVE-2019-17446: Eracent Epa Agent
High severity, CVSS 7.8. EPSS: 0.3% chance of exploitation in the next 30 days.
An issue was discovered in Eracent EPA Agent through 10.2.26. The agent executable, when installed for non-root operations (scanning), can be used to start external programs with elevated permissions because of an Untrusted Search Path.
Affected products
- Eracent Epa Agent: up to and including 10.2.26
Published 2019-11-22. Last modified 2026-06-17.