Vulnerabilities
Vulnerable Software
Thalesgroup:  Security Vulnerabilities
Vulnerability on the external sharing feature in Cryptobox allows an attacker knowing a sharing link URL to retrieve information from the server allowing an offline brute-force attack of the access code associated to this sharing link.
CVSS Score
6.9
EPSS Score
0.0
Published
2026-05-07
Network Transfer with AES KHT in Thales Luna EFT 2.1 and above allows a user with administrative console access to access backups taken via offline analysis
CVSS Score
5.9
EPSS Score
0.001
Published
2024-05-23
A flaw in the installer for Thales SafeNet Sentinel HASP LDK prior to 9.16 on Windows allows an attacker to escalate their privilege level via local access.
CVSS Score
7.8
EPSS Score
0.016
Published
2024-02-27
A flaw in the Windows Installer in Thales SafeNet Authentication Client prior to 10.8 R10 on Windows allows an attacker to escalate their privilege level via local access.
CVSS Score
7.8
EPSS Score
0.001
Published
2024-02-27
A flaw in Thales SafeNet Authentication Client prior to 10.8 R10 on Windows allows an attacker to execute code at a SYSTEM level via local access.
CVSS Score
7.8
EPSS Score
0.001
Published
2024-02-27
Improper log permissions in SafeNet Authentication Service Version 3.4.0 on Windows allows an authenticated attacker to cause a denial of service via local privilege escalation.
CVSS Score
5.7
EPSS Score
0.0
Published
2023-08-16
The embedded neutralization of Script-Related HTML Tag, was by-passed in the case of some extra conditions.
CVSS Score
5.7
EPSS Score
0.003
Published
2022-08-02
Thales Safenet Authentication Client (SAC) for Linux and Windows through 10.7.7 creates insecure temporary hid and lock files allowing a local attacker, through a symlink attack, to overwrite arbitrary files, and potentially achieve arbitrary command execution with high privileges.
CVSS Score
6.7
EPSS Score
0.023
Published
2022-06-24
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in SafeNet KeySecure allows an authenticated user to read arbitrary files from the underlying system on which the product is deployed.
CVSS Score
3.3
EPSS Score
0.002
Published
2022-06-10
A flaw in the previous versions of the product may allow an authenticated attacker the ability to execute code as a privileged user on a system where the agent is installed.
CVSS Score
7.8
EPSS Score
0.001
Published
2022-01-19


Contact Us

Shodan ® - All rights reserved