216.73.216.226

CVE-2024-6977

· Published 31/07/2024 17:15 · Modified 31/07/2024 17:15

Labels: CVE-2024-6977 2024-07-312505284f-8ffb-486c-bf60-e19c1097a90bCVE-2024-6977CWE-532

Essential information

Published
31/07/2024 17:15
Modified
31/07/2024 17:15
Author
Creator
CVSS
6.5 MEDIUM (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N

CVSS metrics

Description

A vulnerability in Cato Networks SDP Client on Windows allows the insertion of sensitive information into the log file, which can lead to an account takeover. However, the attack requires bypassing protections on modifying the tunnel token on a the attacker's system.This issue affects SDP Client: before 5.10.34.

NVD status

Status
Received — CVE has been recently published to the CVE List and has been received by the NVD.
Source
2505284f-8ffb-486c-bf60-e19c1097a90b
NVD
View on NVD

References