Remote manipulations with language pack updater lead to NTLM-relay attack for system user in Gemaltos HASP SRM, Sentinel HASP and Sentinel LDK products prior to Sentinel LDK RTE version 7.55.
When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Sentinel_ldk_rte_firmware | Sentinel | * | 7.50 (including) |