First published: Fri Mar 02 2018(Updated: )
SafeNet Authentication Service for NPS Agent uses a weak ACL for unspecified installation directories and executable modules, which allows local users to gain privileges by modifying an executable module.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Gemalto Safenet Authentication Service |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-7964 has a high severity due to the potential for local privilege escalation.
To fix CVE-2015-7964, apply the latest security updates from Gemalto for the SafeNet Authentication Service.
Users of the Gemalto SafeNet Authentication Service for NPS Agent are affected by CVE-2015-7964.
CVE-2015-7964 allows local users to gain elevated privileges by modifying executable modules due to weak ACLs.
CVE-2015-7964 was disclosed in 2015 as part of a series of vulnerabilities in SafeNet Authentication Service.