CVE Vulnerabilities

CVE-2023-41099

Improper Privilege Management

Published: Mar 22, 2024 | Modified: Jun 17, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

In the Windows installer in Atos Eviden CardOS API before 5.5.5.2811, Local Privilege Escalation can occur.(from a regular user to SYSTEM).

Weakness

The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.

Affected Software

Name Vendor Start Version End Version
Eviden_cardos_api Atos 5.0 (including) 5.5.5.2811 (excluding)

Potential Mitigations

References