Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-c542-5hmc-h473

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.5

Описание

Cisco Secure Desktop (CSD) does not require that the ClearPageFileAtShutdown (aka CCE-Winv2.0-407) registry value equals 1, which might allow local users to read certain memory pages that were written during another user's SSL VPN session.

Cisco Secure Desktop (CSD) does not require that the ClearPageFileAtShutdown (aka CCE-Winv2.0-407) registry value equals 1, which might allow local users to read certain memory pages that were written during another user's SSL VPN session.

EPSS

Процентиль: 21%
0.00068
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-125

Связанные уязвимости

CVSS3: 5.5
nvd
больше 19 лет назад

Cisco Secure Desktop (CSD) does not require that the ClearPageFileAtShutdown (aka CCE-Winv2.0-407) registry value equals 1, which might allow local users to read certain memory pages that were written during another user's SSL VPN session.

EPSS

Процентиль: 21%
0.00068
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-125