Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-33921

Опубликовано: 11 авг. 2026
Источник: nvd
CVSS3: 5.2
EPSS Низкий

Описание

The Windows installer deployed Npcap leaving its access restriction option at the insecure default value, so the driver was accessible to every local user of the host instead of being restricted to administrators only. A local user without administrative privileges could use the Npcap driver to capture the traffic reaching the host, which discloses information belonging both to the host and to other systems on the same network segment, and to send arbitrary raw packets on that segment.

EPSS

Процентиль: 1%
0.001
Низкий

5.2 Medium

CVSS3

Дефекты

CWE-1188

Связанные уязвимости

CVSS3: 5.2
redhat
около 1 месяца назад

The Windows installer deployed Npcap leaving its access restriction option at the insecure default value, so the driver was accessible to every local user of the host instead of being restricted to administrators only. A local user without administrative privileges could use the Npcap driver to capture the traffic reaching the host, which discloses information belonging both to the host and to other systems on the same network segment, and to send arbitrary raw packets on that segment.

CVSS3: 5.2
github
около 1 месяца назад

The Windows installer deployed Npcap leaving its access restriction option at the insecure default value, so the driver was accessible to every local user of the host instead of being restricted to administrators only. A local user without administrative privileges could use the Npcap driver to capture the traffic reaching the host, which discloses information belonging both to the host and to other systems on the same network segment, and to send arbitrary raw packets on that segment.

EPSS

Процентиль: 1%
0.001
Низкий

5.2 Medium

CVSS3

Дефекты

CWE-1188