Stormshield Endpoint Security Evolution 2.0.0 through 2.3.2 has Insecure Permissions. An interactive user can use the SES Evolution agent to create arbitrary files with local system privileges.
References
Link | Resource |
---|---|
https://advisories.stormshield.eu | Vendor Advisory |
https://advisories.stormshield.eu/2023-022/ | Vendor Advisory |
Configurations
History
No history.
Information
Published : 2023-06-27 17:15
Updated : 2023-07-05 13:42
NVD link : CVE-2023-35799
Mitre link : CVE-2023-35799
CVE.ORG link : CVE-2023-35799
JSON object : View
Products Affected
stormshield
- endpoint_security
CWE
CWE-732
Incorrect Permission Assignment for Critical Resource