CVE-2022-28877: F-Secure Elements Endpoint Protection
Medium severity, CVSS 6.7. EPSS: 0.4% chance of exploitation in the next 30 days.
This vulnerability allows local user to delete arbitrary file in the system and bypassing security protection which can be abused for local privilege escalation on affected F-Secure & WithSecure windows endpoint products. An attacker must have code execution rights on the victim machine prior to successful exploitation.
Affected products
- F-Secure Elements Endpoint Protection: any version
Published 2022-07-21. Last modified 2026-06-17.