Improper file verification vulnerability in SaAT Netizen installer ver.1.2.0.424 and earlier, and SaAT Netizen ver.1.2.0.8 (Build427) and earlier allows a remote unauthenticated attacker to conduct a man-in-the-middle attack. A successful exploitation may result in a malicious file being downloaded and executed.
References
Link | Resource |
---|---|
https://jvn.jp/en/vu/JVNVU97339542/ | Third Party Advisory |
https://web-support.saat.jp/hc/ja/articles/4406222933785 | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
09 Nov 2023, 00:17
Type | Values Removed | Values Added |
---|---|---|
First Time |
Saat netizen
Microsoft windows Saat Saat netizen Installer Microsoft |
|
CWE | NVD-CWE-noinfo | |
CPE | cpe:2.3:a:saat:netizen_installer:*:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:* cpe:2.3:a:saat:netizen:*:*:*:*:*:*:*:* |
|
References | (MISC) https://web-support.saat.jp/hc/ja/articles/4406222933785 - Vendor Advisory | |
References | (MISC) https://jvn.jp/en/vu/JVNVU97339542/ - Third Party Advisory | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 8.1 |
31 Oct 2023, 13:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-10-31 13:15
Updated : 2024-02-28 20:33
NVD link : CVE-2016-1203
Mitre link : CVE-2016-1203
CVE.ORG link : CVE-2016-1203
JSON object : View
Products Affected
saat
- netizen_installer
- netizen
microsoft
- windows
CWE