Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
| Link | Providers |
|---|---|
| https://www.iru.com/updates/2026/03/agent-4-7-5-5374 |
|
Fri, 19 Jun 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Iru
Iru kandji Agent |
|
| Vendors & Products |
Iru
Iru kandji Agent |
Thu, 18 Jun 2026 04:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Local Privilege Escalation via Client Validation Gap in Iru, Inc Kandji Agent |
Wed, 17 Jun 2026 05:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Local Privilege Escalation via Client Validation Gap in Iru, Inc Kandji Agent |
Tue, 16 Jun 2026 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-269 | |
| Metrics |
cvssV3_1
|
Mon, 15 Jun 2026 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An issue in Iru, Inc Kandji Agent before v.4.7.5(5374) allows a local attacker to escalate privileges via a client validation gap to invoke restricted agent functionality. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-06-16T18:12:36.579Z
Reserved: 2026-04-06T00:00:00.000Z
Link: CVE-2026-39118
Updated: 2026-06-16T18:12:32.838Z
Status : Deferred
Published: 2026-06-15T20:16:27.447
Modified: 2026-06-16T19:16:36.940
Link: CVE-2026-39118
No data.
OpenCVE Enrichment
Updated: 2026-06-19T09:35:59Z