Vulnerabilities > Catonetworks > Cato Client > 5.5
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-07-31 | CVE-2024-6973 | Unspecified vulnerability in Catonetworks Cato Client Remote Code Execution in Cato Windows SDP client via crafted URLs. This issue affects Windows SDP Client before 5.10.34. | 8.8 |
2024-07-31 | CVE-2024-6974 | Incorrect Default Permissions vulnerability in Catonetworks Cato Client Cato Networks Windows SDP Client Local Privilege Escalation via self-upgradeThis issue affects SDP Client: before 5.10.34. | 7.8 |
2024-07-31 | CVE-2024-6975 | Untrusted Search Path vulnerability in Catonetworks Cato Client Cato Networks Windows SDP Client Local Privilege Escalation via openssl configuration file. This issue affects SDP Client before 5.10.34. | 8.8 |
2024-07-31 | CVE-2024-6977 | Information Exposure Through Log Files vulnerability in Catonetworks Cato Client A vulnerability in Cato Networks SDP Client on Windows allows the insertion of sensitive information into the log file, which can lead to an account takeover. | 6.5 |
2024-07-31 | CVE-2024-6978 | Unspecified vulnerability in Catonetworks Cato Client Cato Networks Windows SDP Client Local root certificates can be installed by low-privileged users.This issue affects SDP Client: before 5.10.28. | 8.8 |