SafeNet Sentinel LDK License Manager, all versions prior to 7.101(only Microsoft Windows versions are affected) is vulnerable when configured as a service. This vulnerability may allow an attacker with local access to create, write, and/or delete files in system folder using symbolic links, leading to a privilege escalation. This vulnerability could also be used by an attacker to execute a malicious DLL, which could impact the integrity and availability of the system.
Affected vendor
gemaltoAffected product
sentinel ldk license managerCoverage
Single affected product entry
CVSS
7.8
HIGH
Published
Dec 11, 2019

