Vulnerabilities > CVE-2023-6253 - Insecure Storage of Sensitive Information vulnerability in Fortra Digital Guardian Agent

047910
CVSS 6.0 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
HIGH
Confidentiality impact
NONE
Integrity impact
HIGH
Availability impact
HIGH
local
low complexity
fortra
CWE-922

Summary

A saved encryption key in the Uninstaller in Digital Guardian's Agent before version 7.9.4 allows a local attacker to retrieve the uninstall key and remove the software by extracting the uninstaller key from the memory of the uninstaller file.

Vulnerable Configurations

Part Description Count
Application
Fortra
1

Common Weakness Enumeration (CWE)