CVE-2023-35800

CVSS 3.1 Score 4.3 of 10 (medium)

Details

Published Jun 27, 2023
Updated: Jul 5, 2023
CWE ID 732

Summary

CVE-2023-35800: A vulnerability affects Stormshield Endpoint Security Evolution versions 2.0.0 through 2.4.2. This issue involves insecure permissions on the agent directory's ACL entry, which displays the agent logs in the GUI. Interactive users can read the data, potentially gaining access to administrator-reserved information.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share