Vulnerabilities > Paloaltonetworks > Secdo > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-04-08 CVE-2020-1986 Improper Input Validation vulnerability in Paloaltonetworks Secdo
Improper input validation vulnerability in Secdo allows an authenticated local user with 'create folders or append data' access to the root of the OS disk (C:\) to cause a system crash on every login.
local
low complexity
paloaltonetworks CWE-20
4.9
2020-04-08 CVE-2020-1985 Incorrect Default Permissions vulnerability in Paloaltonetworks Secdo
Incorrect Default Permissions on C:\Programdata\Secdo\Logs folder in Secdo allows local authenticated users to overwrite system files and gain escalated privileges.
local
low complexity
paloaltonetworks CWE-276
4.6