An issue found in Webroot SecureAnywhere Endpoint Protection CE 23.1 v.9.0.33.39 and before allows a local attacker to access sensitive information via the EXE installer. NOTE: the vendor's perspective is that this is not a separate vulnerability relative to CVE-2023-29818 and CVE-2023-29819.
References
Link | Resource |
---|---|
http://secureanywhere.com | Product |
http://webroot.com | Product |
https://www.spenceralessi.com/CVEs/2023-05-10-Webroot-SecureAnywhere/ | Third Party Advisory |
Configurations
History
07 Nov 2023, 04:11
Type | Values Removed | Values Added |
---|---|---|
Summary | An issue found in Webroot SecureAnywhere Endpoint Protection CE 23.1 v.9.0.33.39 and before allows a local attacker to access sensitive information via the EXE installer. NOTE: the vendor's perspective is that this is not a separate vulnerability relative to CVE-2023-29818 and CVE-2023-29819. |
27 May 2023, 19:15
Type | Values Removed | Values Added |
---|---|---|
Summary | ** DISPUTED ** An issue found in Webroot SecureAnywhere Endpoint Protection CE 23.1 v.9.0.33.39 and before allows a local attacker to access sensitive information via the EXE installer. NOTE: the vendor's perspective is that this is not a separate vulnerability relative to CVE-2023-29818 and CVE-2023-29819. |
Information
Published : 2023-05-12 11:15
Updated : 2024-08-02 15:15
NVD link : CVE-2023-29820
Mitre link : CVE-2023-29820
CVE.ORG link : CVE-2023-29820
JSON object : View
Products Affected
webroot
- secureanywhere
CWE
CWE-668
Exposure of Resource to Wrong Sphere