Show filters
26 Total Results
Displaying 1-10 of 26
Sort by:
Attacker Value
Unknown
CVE-2019-18232
Disclosure Date: December 11, 2019 (last updated November 27, 2024)
SafeNet Sentinel LDK License Manager, all versions prior to 7.101(only Microsoft Windows versions are affected) is vulnerable when configured as a service. This vulnerability may allow an attacker with local access to create, write, and/or delete files in system folder using symbolic links, leading to a privilege escalation. This vulnerability could also be used by an attacker to execute a malicious DLL, which could impact the integrity and availability of the system.
0
Attacker Value
Unknown
CVE-2019-8283
Disclosure Date: June 07, 2019 (last updated November 27, 2024)
Hasplm cookie in Gemalto Admin Control Center, all versions prior to 7.92, does not have 'HttpOnly' flag. This allows malicious javascript to steal it.
0
Attacker Value
Unknown
CVE-2019-8282
Disclosure Date: June 07, 2019 (last updated November 27, 2024)
Gemalto Admin Control Center, all versions prior to 7.92, uses cleartext HTTP to communicate with www3.safenet-inc.com to obtain language packs. This allows attacker to do man-in-the-middle (MITM) attack and replace original language pack by malicious one.
0
Attacker Value
Unknown
CVE-2019-9157
Disclosure Date: June 05, 2019 (last updated November 27, 2024)
Gemalto DS3 Authentication Server 2.6.1-SP01 allows Local File Disclosure.
0
Attacker Value
Unknown
CVE-2019-9158
Disclosure Date: June 05, 2019 (last updated November 27, 2024)
Gemalto DS3 Authentication Server 2.6.1-SP01 has Broken Access Control.
0
Attacker Value
Unknown
CVE-2019-9156
Disclosure Date: June 05, 2019 (last updated November 27, 2024)
Gemalto DS3 Authentication Server 2.6.1-SP01 allows OS Command Injection.
0
Attacker Value
Unknown
CVE-2019-6534
Disclosure Date: April 11, 2019 (last updated November 27, 2024)
The uncontrolled search path element vulnerability in Gemalto Sentinel UltraPro Client Library ux32w.dll Versions 1.3.0, 1.3.1, and 1.3.2 enables an attacker to load and execute a malicious file.
0
Attacker Value
Unknown
CVE-2018-15492
Disclosure Date: August 18, 2018 (last updated November 27, 2024)
A vulnerability in the lservnt.exe component of Sentinel License Manager version 8.5.3.35 (fixed in 8.5.3.2403) causes UDP amplification.
0
Attacker Value
Unknown
CVE-2018-8900
Disclosure Date: May 02, 2018 (last updated November 26, 2024)
The License Manager service of HASP SRM, Sentinel HASP and Sentinel LDK products prior to Sentinel LDK RTE 7.80 allows remote attackers to inject malicious web script in the logs page of Admin Control Center (ACC) for cross-site scripting (XSS) vulnerability.
0
Attacker Value
Unknown
CVE-2018-6304
Disclosure Date: March 13, 2018 (last updated November 26, 2024)
Stack overflow in custom XML-parser in Gemalto's Sentinel LDK RTE version before 7.65 leads to remote denial of service
0