Improper Privilege Management vulnerability in WatchGuard EPDR, Panda AD360 and Panda Dome on Windows (PSANHost.exe module) allows arbitrary file delete with SYSTEM permissions.

Project Subscriptions

Vendors Products
Watchgua Subscribe
Panda Dome Firmware Subscribe
Watchguard Subscribe
Endpoint Security Subscribe
Epdr Firmware Subscribe
Panda Ad360 Firmware Subscribe
Panda Dome Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2024-49166 Improper Privilege Management vulnerability in WatchGuard EPDR, Panda AD360 and Panda Dome on Windows (PSANHost.exe module) allows arbitrary file delete with SYSTEM permissions. This issue affects EPDR: before 8.00.23.0000; Panda AD360: before 8.00.23.0000; Panda Dome: before 22.03.00.
Fixes

Solution

Endpoint Security 8.00.23.0000, Panda Dome 22.03.00


Workaround

No workaround given by the vendor.

History

Sat, 08 Aug 2026 00:00:00 +0000

Type Values Removed Values Added
Description Improper Privilege Management vulnerability in WatchGuard EPDR, Panda AD360 and Panda Dome on Windows (PSANHost.exe module) allows arbitrary file delete with SYSTEM permissions. This issue affects EPDR: before 8.00.23.0000; Panda AD360: before 8.00.23.0000; Panda Dome: before 22.03.00. Improper Privilege Management vulnerability in WatchGuard EPDR, Panda AD360 and Panda Dome on Windows (PSANHost.exe module) allows arbitrary file delete with SYSTEM permissions.
First Time appeared Watchguard endpoint Security
Watchguard panda Dome
CPEs cpe:2.3:a:watchguard:endpoint_security:*:*:*:*:*:*:*:*
cpe:2.3:a:watchguard:panda_dome:*:*:*:*:*:*:*:*
Vendors & Products Watchguard endpoint Security
Watchguard panda Dome
References
Metrics cvssV4_0

{'score': 8.5, 'vector': 'CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'}


Sun, 13 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.00024}

epss

{'score': 0.00025}


Fri, 08 Nov 2024 16:15:00 +0000

Type Values Removed Values Added
First Time appeared Watchgua
Watchgua panda Dome Firmware
Watchguard
Watchguard epdr Firmware
Watchguard panda Ad360 Firmware
CPEs cpe:2.3:o:watchgua:panda_dome_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:watchguard:epdr_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:watchguard:panda_ad360_firmware:*:*:*:*:*:*:*:*
Vendors & Products Watchgua
Watchgua panda Dome Firmware
Watchguard
Watchguard epdr Firmware
Watchguard panda Ad360 Firmware
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Thu, 07 Nov 2024 23:30:00 +0000

Type Values Removed Values Added
Description Improper Privilege Management vulnerability in WatchGuard EPDR, Panda AD360 and Panda Dome on Windows (PSANHost.exe module) allows arbitrary file delete with SYSTEM permissions. This issue affects EPDR: before 8.00.23.0000; Panda AD360: before 8.00.23.0000; Panda Dome: before 22.03.00.
Title WatchGuard Endpoint Protection Privilege Escalation in PSANHost Enables Arbitrary File Delete as SYSTEM
Weaknesses CWE-269
References
Metrics cvssV3_1

{'score': 7.8, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: WatchGuard

Published:

Updated: 2026-08-07T23:43:42.128Z

Reserved: 2024-09-04T14:08:29.933Z

Link: CVE-2024-8424

cve-icon Vulnrichment

Updated: 2024-11-08T15:28:43.363Z

cve-icon NVD

Status : Deferred

Published: 2024-11-08T00:15:15.807

Modified: 2026-06-17T08:22:33.260

Link: CVE-2024-8424

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses