PT-2024-38014 · Cato Networks · Cato Networks Windows Sdp Client

Amberwolf

·

Published

2024-07-31

·

Updated

2024-08-27

·

CVE-2024-6975

CVSS v3.1

8.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Cato Networks Windows SDP Client versions prior to 5.10.34
Description The issue is related to a local privilege escalation vulnerability in the Cato Networks Windows SDP Client via the openssl configuration file.
Recommendations For versions prior to 5.10.34, update to version 5.10.34 or later to resolve the issue.

Exploit

Fix

Untrusted Search Path

Weakness Enumeration

Related Identifiers

CVE-2024-6975

Affected Products

Cato Networks Windows Sdp Client