VulnerabilityModified
CVE-2012-4767
An issue exists in Safend Data Protector Agent 3.4.5586.9772 in the securitylayer.log file in the logs.9972 directory, which could let a malicious user decrypt and potentially change the Safend security policies applied to the machine.
MEDIUM 6.1EPSS 0.48%
Does this matter?
Lower severity and a low EPSS score (0.48%). Track it; it rarely justifies an emergency change on its own.
Description
An issue exists in Safend Data Protector Agent 3.4.5586.9772 in the securitylayer.log file in the logs.9972 directory, which could let a malicious user decrypt and potentially change the Safend security policies applied to the machine.
- CVSS 3.1
- 6.1 MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N
- EPSS
- 0.48% probability · 40th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-269
- Affected
- safend/data protector agent
- Source
- cve@mitre.org
References
- http://www.securityfocus.com/bid/56740Third Party Advisory, VDB Entry
- https://packetstormsecurity.com/files/118491/Safend-Data-Protector-3.4.5586.9772-Privilege-Escalation.htmlExploit, Third Party Advisory, VDB Entry
- https://www.securityfocus.com/archive/1/524864Exploit, Mailing List, Third Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/56740Third Party Advisory, VDB Entry
- https://packetstormsecurity.com/files/118491/Safend-Data-Protector-3.4.5586.9772-Privilege-Escalation.htmlExploit, Third Party Advisory, VDB Entry
- https://www.securityfocus.com/archive/1/524864Exploit, Mailing List, Third Party Advisory, VDB Entry
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.