Filtered by vendor Paloaltonetworks Subscriptions
Filtered by product Secdo Subscriptions
Total 3 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2020-1986 2 Microsoft, Paloaltonetworks 2 Windows, Secdo 2020-04-10 5.5 Medium
Improper input validation vulnerability in Secdo allows an authenticated local user with 'create folders or append data' access to the root of the OS disk (C:\) to cause a system crash on every login. This issue affects all versions Secdo for Windows.
CVE-2020-1984 2 Microsoft, Paloaltonetworks 2 Windows, Secdo 2020-04-10 7.8 High
Secdo tries to execute a script at a hardcoded path if present, which allows a local authenticated user with 'create folders or append data' access to the root of the OS disk (C:\) to gain system privileges if the path does not already exist or is writable. This issue affects all versions of Secdo for Windows.
CVE-2020-1985 2 Microsoft, Paloaltonetworks 2 Windows, Secdo 2020-04-10 7.8 High
Incorrect Default Permissions on C:\Programdata\Secdo\Logs folder in Secdo allows local authenticated users to overwrite system files and gain escalated privileges. This issue affects all versions Secdo for Windows.