PT-2024-14855 · Thales+1 · Thales Safenet Authentication Client+1

Published

2024-02-27

·

Updated

2024-02-27

·

CVE-2023-5993

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Thales SafeNet Authentication Client versions prior to 10.8 R10
Description A flaw in the Windows Installer in Thales SafeNet Authentication Client allows an attacker to escalate their privilege level via local access.
Recommendations For versions prior to 10.8 R10, update to version 10.8 R10 or later to resolve the issue. As a temporary workaround, consider restricting local access to the system until a patch is applied.

Fix

Improper Privilege Management

Weakness Enumeration

Related Identifiers

CVE-2023-5993

Affected Products

Thales Safenet Authentication Client
Windows Installer