CVE-2026-38766
Deferred Deferred - Pending Action

Privilege Escalation in Protegent 360

Vulnerability report for CVE-2026-38766, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-07-22

Last updated on: 2026-07-24

Assigner: MITRE

Description

An issue in Unistal Systems Pvt. Ltd.Protegent 360 v2.0.0.4 allows a local attacker to escalate privileges via the sub_186f4 function

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-07-22
Last Modified
2026-07-24
Generated
2026-08-12
AI Q&A
2026-07-23
EPSS Evaluated
2026-08-10
NVD
EUVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
unistal_systems_pvt_ltd protegent_360 2.0.0.4

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-782 The product implements an IOCTL with functionality that should be restricted, but it does not properly enforce access control for the IOCTL.
CWE-269 The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This vulnerability is a local privilege escalation issue in Unistal Systems Pvt. Ltd. Protegent 360 v2.0.0.4. It allows a local attacker to gain higher privileges by exploiting the sub_186f4 function.

Impact Analysis

If you use Protegent 360 v2.0.0.4, an attacker with local access could escalate their privileges, potentially gaining control over the system or accessing sensitive data.

Compliance Impact

The provided CVE data does not include information about compliance impacts on standards like GDPR or HIPAA. The vulnerability involves local privilege escalation in Unistal Systems Pvt. Ltd. Protegent 360 v2.0.0.4, but no details are given about regulatory implications.

Mitigation Strategies

Immediately update Protegent 360 to the latest patched version if available. Disable local attacker access where possible and monitor system logs for unusual privilege escalation attempts.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-38766. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart