CVE-2023-2737

Improper log permissions in SafeNet Authentication Service Version 3.4.0 on Windows allows an authenticated attacker to cause a denial of service via local privilege escalation.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:thalesgroup:safenet_authentication_service:3.4.0:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

21 Nov 2024, 07:59

Type Values Removed Values Added
References () https://supportportal.thalesgroup.com/csm?id=kb_article_view&sys_kb_id=08f460ba47bba550c0e42e61e36d432f&sysparm_article=KB0027485 - Permissions Required, Vendor Advisory () https://supportportal.thalesgroup.com/csm?id=kb_article_view&sys_kb_id=08f460ba47bba550c0e42e61e36d432f&sysparm_article=KB0027485 - Permissions Required, Vendor Advisory
CVSS v2 : unknown
v3 : 5.5
v2 : unknown
v3 : 5.7

25 Aug 2023, 15:42

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
References (MISC) https://supportportal.thalesgroup.com/csm?id=kb_article_view&sys_kb_id=08f460ba47bba550c0e42e61e36d432f&sysparm_article=KB0027485 - (MISC) https://supportportal.thalesgroup.com/csm?id=kb_article_view&sys_kb_id=08f460ba47bba550c0e42e61e36d432f&sysparm_article=KB0027485 - Permissions Required, Vendor Advisory
CWE CWE-276
First Time Microsoft
Thalesgroup safenet Authentication Service
Microsoft windows
Thalesgroup
CPE cpe:2.3:a:thalesgroup:safenet_authentication_service:3.4.0:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

16 Aug 2023, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-08-16 16:15

Updated : 2024-11-21 07:59


NVD link : CVE-2023-2737

Mitre link : CVE-2023-2737

CVE.ORG link : CVE-2023-2737


JSON object : View

Products Affected

microsoft

  • windows

thalesgroup

  • safenet_authentication_service
CWE
CWE-276

Incorrect Default Permissions