Описание
Improper link resolution before file access in the Nomad module of the 1E Client, in versions prior to 25.3, enables an attacker with local unprivileged access on a Windows system to delete arbitrary files on the device by exploiting symbolic links.
Ссылки
- Not Applicable
- Not Applicable
- Third Party AdvisoryUS Government Resource
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 25.3 (исключая)
cpe:2.3:a:1e:platform:*:*:*:*:*:*:*:*
EPSS
Процентиль: 12%
0.00217
Низкий
7.8 High
CVSS3
Дефекты
CWE-59
Связанные уязвимости
CVSS3: 7.8
github
больше 1 года назад
Improper link resolution before file access in the Nomad module of the 1E Client, in versions prior to 25.3, enables an attacker with local unprivileged access on a Windows system to delete arbitrary files on the device by exploiting symbolic links.
CVSS3: 7.8
fstec
больше 1 года назад
Уязвимость компонента Nomad Module программного обеспечения 1E Client, позволяющая нарушителю удалять произвольные файлы на устройстве
EPSS
Процентиль: 12%
0.00217
Низкий
7.8 High
CVSS3
Дефекты
CWE-59