Vulnerabilities > CVE-2024-1470 - Authorization Bypass Through User-Controlled Key vulnerability in Netiq Client Login Extension 4.6

047910
CVSS 7.8 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
local
low complexity
netiq
CWE-639

Summary

Authorization Bypass Through User-Controlled Key vulnerability in NetIQ (OpenText) Client Login Extension on Windows allows Privilege Escalation, Code Injection.This issue only affects NetIQ Client Login Extension: 4.6.

Vulnerable Configurations

Part Description Count
Application
Netiq
1