# CVE-2024-13972

## Summary

- **CVE ID:** CVE-2024-13972
- **Severity:** HIGH
- **CVSS Score:** 8.8 (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H)
- **CWE:** CWE-276
- **Published:** Jul 17, 2025
- **Last Modified:** Mar 13, 2026

## Description

A vulnerability related to registry permissions in the Intercept X for Windows updater prior to Core Agent version 2024.3.2 can lead to a local user gaining SYSTEM level privileges during a product upgrade.

## Affected Products

- Sophos — Sophos Intercept X for Windows Core Agent (0)

## References

- [CNA](https://www.sophos.com/en-us/security-advisories/sophos-sa-20250717-cix-lpe)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.13%
- **EPSS Percentile:** 2.9

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-10._