Show filters
6 Total Results
Displaying 1-6 of 6
Sort by:
Attacker Value
Unknown

CVE-2024-6978

Disclosure Date: July 31, 2024 (last updated February 26, 2025)
Cato Networks Windows SDP Client Local root certificates can be installed by low-privileged users.This issue affects SDP Client: before 5.10.28.
Attacker Value
Unknown

CVE-2024-6977

Disclosure Date: July 31, 2024 (last updated February 26, 2025)
A vulnerability in Cato Networks SDP Client on Windows allows the insertion of sensitive information into the log file, which can lead to an account takeover. However, the attack requires bypassing protections on modifying the tunnel token on a the attacker's system.This issue affects SDP Client: before 5.10.34.
Attacker Value
Unknown

CVE-2024-6975

Disclosure Date: July 31, 2024 (last updated February 26, 2025)
Cato Networks Windows SDP Client Local Privilege Escalation via openssl configuration file. This issue affects SDP Client before 5.10.34.
Attacker Value
Unknown

CVE-2024-6974

Disclosure Date: July 31, 2024 (last updated February 26, 2025)
Cato Networks Windows SDP Client Local Privilege Escalation via self-upgradeThis issue affects SDP Client: before 5.10.34.
Attacker Value
Unknown

CVE-2024-6973

Disclosure Date: July 31, 2024 (last updated February 26, 2025)
Remote Code Execution in Cato Windows SDP client via crafted URLs. This issue affects Windows SDP Client before 5.10.34.
Attacker Value
Unknown

CVE-2023-43976

Disclosure Date: October 03, 2023 (last updated February 25, 2025)
An issue in CatoNetworks CatoClient before v.5.4.0 allows attackers to escalate privileges and winning the race condition (TOCTOU) via the PrivilegedHelperTool component.