PT-2024-12920 · Atos · Atos Eviden Cardos Api

Published

2024-03-22

·

Updated

2024-08-22

·

CVE-2023-41099

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Atos Eviden CardOS API versions prior to 5.5.5.2811
Description The issue allows for Local Privilege Escalation, enabling an attacker to escalate privileges from a regular user to SYSTEM. This occurs in the Windows installer component of the affected software.
Recommendations For versions prior to 5.5.5.2811, update to version 5.5.5.2811 or later to resolve the issue.

Fix

Improper Privilege Management

Weakness Enumeration

Related Identifiers

CVE-2023-41099

Affected Products

Atos Eviden Cardos Api