PT-2023-31550 · Primx · Primx Zonecentral
Published
2023-12-13
·
Updated
2023-12-20
·
CVE-2023-50442
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
PRIMX ZONECENTRAL versions through 2023.5
Description
Encrypted folders created by PRIMX ZONECENTRAL can be modified by a local attacker with appropriate privileges to temporarily exclude specific file types from encryption. This modification can be detected as described in the Administrator Guide.
Recommendations
For PRIMX ZONECENTRAL versions through 2023.5, consider monitoring for modifications to encrypted folders and reviewing the Administrator Guide for detection methods. As a temporary workaround, ensure that local attackers do not have the necessary privileges to modify encrypted folders. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Primx Zonecentral