A flaw in Thales SafeNet Authentication Client prior to 10.8 R10 on Windows allows an attacker to execute code at a SYSTEM level via local access.
The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Safenet_authentication_client | Thalesgroup | * | 10.8 (excluding) |
| Safenet_authentication_client | Thalesgroup | 10.8 (including) | 10.8 (including) |
| Safenet_authentication_client | Thalesgroup | 10.8-r1 (including) | 10.8-r1 (including) |
| Safenet_authentication_client | Thalesgroup | 10.8-r5 (including) | 10.8-r5 (including) |
| Safenet_authentication_client | Thalesgroup | 10.8-r6 (including) | 10.8-r6 (including) |
| Safenet_authentication_client | Thalesgroup | 10.8-r8 (including) | 10.8-r8 (including) |
| Safenet_authentication_client | Thalesgroup | 10.8-r9 (including) | 10.8-r9 (including) |