CVE-2024-14047: Elastic Winlogbeat
High severity, CVSS 7.1. EPSS: 0.1% chance of exploitation in the next 30 days.
A local vulnerability in the Winlogbeat Windows installer caused runtime files to be placed in a directory writable by unprivileged users. A low-privileged attacker with existing access to the system could pre-position malicious filesystem links, causing a subsequent elevated Winlogbeat operation to write to or delete arbitrary files. Successful exploitation could result in a denial of service.
Affected products
- Elastic Winlogbeat: from 7.6.0, before 8.13.0 (fixed in 8.13.0)
Published 2026-09-01. Last modified 2026-09-10.