CVE-2024-0259: Fortra Robot Schedule

High severity, CVSS 7.3. EPSS: 0.3% chance of exploitation in the next 30 days.

Fortra's Robot Schedule Enterprise Agent for Windows prior to version 3.04 is susceptible to privilege escalation. A low-privileged user can overwrite the service executable. When the service is restarted, the replaced binary runs with local system privileges, allowing a low-privileged user to gain elevated privileges.

Affected products

  • Fortra Robot Schedule: before 3.04 (fixed in 3.04)

Published 2024-03-28. Last modified 2026-06-17.