CVE-2021-42138

A user of a machine protected by SafeNet Agent for Windows Logon may leverage weak entropy to access the encrypted credentials of any or all the users on that machine.
Configurations

Configuration 1 (hide)

cpe:2.3:a:thalesgroup:safenet_windows_logon_agent:*:*:*:*:*:*:*:*

History

21 Nov 2024, 06:27

Type Values Removed Values Added
CVSS v2 : 3.5
v3 : 6.5
v2 : 3.5
v3 : 7.2
References () https://cpl.thalesgroup.com/support/security-updates - Vendor Advisory () https://cpl.thalesgroup.com/support/security-updates - Vendor Advisory
References () https://supportportal.gemalto.com/csm?sys_kb_id=a52bd13adbff7010f0e322080596194a&id=kb_article_view&sysparm_rank=1&sysparm_tsqueryId=b3bdd932db33b010f0e3220805961955 - Permissions Required () https://supportportal.gemalto.com/csm?sys_kb_id=a52bd13adbff7010f0e322080596194a&id=kb_article_view&sysparm_rank=1&sysparm_tsqueryId=b3bdd932db33b010f0e3220805961955 - Permissions Required
References () https://supportportal.gemalto.com/csm?sys_kb_id=e8397662dbb7fc10520c4705059619eb&id=kb_article_view&sysparm_rank=2&sysparm_tsqueryId=b3bdd932db33b010f0e3220805961955 - Permissions Required () https://supportportal.gemalto.com/csm?sys_kb_id=e8397662dbb7fc10520c4705059619eb&id=kb_article_view&sysparm_rank=2&sysparm_tsqueryId=b3bdd932db33b010f0e3220805961955 - Permissions Required

Information

Published : 2021-12-20 21:15

Updated : 2024-11-21 06:27


NVD link : CVE-2021-42138

Mitre link : CVE-2021-42138

CVE.ORG link : CVE-2021-42138


JSON object : View

Products Affected

thalesgroup

  • safenet_windows_logon_agent
CWE
CWE-331

Insufficient Entropy