Stormshield Endpoint Security Evolution 2.0.0 through 2.4.2 has Insecure Permissions. An ACL entry on the SES Evolution agent directory that contains the agent logs displayed in the GUI allows interactive users to read data, which could allow access to information reserved to administrators.
References
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2023-06-27T00:00:00

Updated: 2023-06-27T00:00:00

Reserved: 2023-06-17T00:00:00


Link: CVE-2023-35800

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-06-27T17:15:10.170

Modified: 2023-07-05T13:40:17.047


Link: CVE-2023-35800

JSON object: View

cve-icon Redhat Information

No data.

CWE