Vulnerabilities
Vulnerable Software
Thalesgroup:  Security Vulnerabilities
Network Transfer with AES KHT in Thales Luna EFT 2.1 and above allows a user with administrative console access to access backups taken via offline analysis
CVSS Score
5.9
EPSS Score
0.0
Published
2024-05-23
A flaw in the installer for Thales SafeNet Sentinel HASP LDK prior to 9.16 on Windows allows an attacker to escalate their privilege level via local access.
CVSS Score
7.8
EPSS Score
0.015
Published
2024-02-27
A flaw in the Windows Installer in Thales SafeNet Authentication Client prior to 10.8 R10 on Windows allows an attacker to escalate their privilege level via local access.
CVSS Score
7.8
EPSS Score
0.001
Published
2024-02-27
A flaw in Thales SafeNet Authentication Client prior to 10.8 R10 on Windows allows an attacker to execute code at a SYSTEM level via local access.
CVSS Score
7.8
EPSS Score
0.002
Published
2024-02-27
Improper log permissions in SafeNet Authentication Service Version 3.4.0 on Windows allows an authenticated attacker to cause a denial of service via local privilege escalation.
CVSS Score
5.7
EPSS Score
0.0
Published
2023-08-16
The embedded neutralization of Script-Related HTML Tag, was by-passed in the case of some extra conditions.
CVSS Score
5.7
EPSS Score
0.003
Published
2022-08-02
Thales Safenet Authentication Client (SAC) for Linux and Windows through 10.7.7 creates insecure temporary hid and lock files allowing a local attacker, through a symlink attack, to overwrite arbitrary files, and potentially achieve arbitrary command execution with high privileges.
CVSS Score
6.7
EPSS Score
0.023
Published
2022-06-24
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in SafeNet KeySecure allows an authenticated user to read arbitrary files from the underlying system on which the product is deployed.
CVSS Score
3.3
EPSS Score
0.002
Published
2022-06-10
A flaw in the previous versions of the product may allow an authenticated attacker the ability to execute code as a privileged user on a system where the agent is installed.
CVSS Score
7.8
EPSS Score
0.001
Published
2022-01-19
A user of a machine protected by SafeNet Agent for Windows Logon may leverage weak entropy to access the encrypted credentials of any or all the users on that machine.
CVSS Score
7.2
EPSS Score
0.002
Published
2021-12-20


Contact Us

Shodan ® - All rights reserved