Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-33921

Опубликовано: 11 авг. 2026
Источник: redhat
CVSS3: 5.2

Описание

The Windows installer deployed Npcap leaving its access restriction option at the insecure default value, so the driver was accessible to every local user of the host instead of being restricted to administrators only. A local user without administrative privileges could use the Npcap driver to capture the traffic reaching the host, which discloses information belonging both to the host and to other systems on the same network segment, and to send arbitrary raw packets on that segment.

A flaw was found in the Npcap driver. The Windows installer for Arc deployed Npcap with insecure default access restrictions, allowing any local user, not just administrators, to access the driver. This vulnerability enables a local user without administrative privileges to capture network traffic, leading to information disclosure from the host and other systems on the same network segment. Additionally, the user can send arbitrary raw packets on that segment.

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-1188
https://bugzilla.redhat.com/show_bug.cgi?id=2513846Nozomi Networks Arc: Npcap Driver: Information disclosure and arbitrary packet sending via insecure access restrictions

5.2 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.2
nvd
около 1 месяца назад

The Windows installer deployed Npcap leaving its access restriction option at the insecure default value, so the driver was accessible to every local user of the host instead of being restricted to administrators only. A local user without administrative privileges could use the Npcap driver to capture the traffic reaching the host, which discloses information belonging both to the host and to other systems on the same network segment, and to send arbitrary raw packets on that segment.

CVSS3: 5.2
github
около 1 месяца назад

The Windows installer deployed Npcap leaving its access restriction option at the insecure default value, so the driver was accessible to every local user of the host instead of being restricted to administrators only. A local user without administrative privileges could use the Npcap driver to capture the traffic reaching the host, which discloses information belonging both to the host and to other systems on the same network segment, and to send arbitrary raw packets on that segment.

5.2 Medium

CVSS3