CVE-2025-37735

Improper preservation of permissions in Elastic Defend on Windows hosts can lead to arbitrary files on the system being deleted by the Defend service running as SYSTEM. In some cases, this could result in local privilege escalation.
Configurations

No configuration.

History

06 Nov 2025, 19:45

Type Values Removed Values Added
New CVE

Information

Published : 2025-11-06 15:15

Updated : 2025-11-06 19:45


NVD link : CVE-2025-37735

Mitre link : CVE-2025-37735

CVE.ORG link : CVE-2025-37735


JSON object : View

Products Affected

No product.

CWE
CWE-281

Improper Preservation of Permissions