Fiche vulnérabilité
CVE-2023-43976 : faille élevée catonetworks cato client (CVSS 8.1)
Description
An issue in CatoNetworks CatoClient before v.5.4.0 allows attackers to escalate privileges and winning the race condition (TOCTOU) via the PrivilegedHelperTool component.
En bref
- Sévérité
- Élevée (CVSS 8.1)
- Vecteur CVSS
- CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
- Exploitation active
- Non signalée par la CISA
- Publication
- 3 oct. 2023
- Dernière mise à jour
- 17 juin 2026
Produits concernés
- catonetworks cato client