First published: Fri Mar 02 2018(Updated: )
SafeNet Authentication Service IIS Agent uses a weak ACL for unspecified installation directories and executable modules, which allows local users to gain privileges by modifying an executable module.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Gemalto Safenet Authentication Service |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-7597 is classified as a high-severity vulnerability due to its potential for privilege escalation.
To fix CVE-2015-7597, ensure that proper access controls are enforced on the installation directories and executable modules.
CVE-2015-7597 affects local users of the Gemalto SafeNet Authentication Service IIS Agent who can modify executable modules.
CVE-2015-7597 is a privilege escalation vulnerability due to weak Access Control Lists (ACLs).
CVE-2015-7597 cannot be exploited remotely as it requires local access to the system.