CVE-2023-35800
CVSS 3.1 Score 4.3 of 10 (medium)
Details
Published Jun 27, 2023
Updated: Jul 5, 2023
CWE ID 732
Summary
CVE-2023-35800: A vulnerability affects Stormshield Endpoint Security Evolution versions 2.0.0 through 2.4.2. This issue involves insecure permissions on the agent directory's ACL entry, which displays the agent logs in the GUI. Interactive users can read the data, potentially gaining access to administrator-reserved information.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share