VYPR

Gemalto's Hasp Srm, Sentinel Hasp And Sentinel Ldk Products Prior To Sentinel Ldk Rte

by Gemalto

CVEs (5)

  • CVE-2017-12822CriOct 4, 2017
    risk 0.64cvss 9.9epss 0.01

    Remote enabling and disabling admin interface in Gemalto's HASP SRM, Sentinel HASP and Sentinel LDK products prior to Sentinel LDK RTE version 7.55 leads to new attack vectors.

  • CVE-2017-12821CriOct 4, 2017
    risk 0.64cvss 9.8epss 0.03

    Memory corruption in Gemalto's HASP SRM, Sentinel HASP and Sentinel LDK products prior to Sentinel LDK RTE version 7.55 might cause remote code execution.

  • CVE-2017-12819CriOct 4, 2017
    risk 0.64cvss 9.8epss 0.01

    Remote manipulations with language pack updater lead to NTLM-relay attack for system user in Gemalto's HASP SRM, Sentinel HASP and Sentinel LDK products prior to Sentinel LDK RTE version 7.55.

  • CVE-2017-12820HigOct 4, 2017
    risk 0.49cvss 7.5epss 0.02

    Arbitrary memory read from controlled memory pointer in Gemalto's HASP SRM, Sentinel HASP and Sentinel LDK products prior to Sentinel LDK RTE version 7.55 leads to remote denial of service.

  • CVE-2017-12818HigOct 4, 2017
    risk 0.49cvss 7.5epss 0.02

    Stack overflow in custom XML-parser in Gemalto's HASP SRM, Sentinel HASP and Sentinel LDK products prior to Sentinel LDK RTE version 7.55 leads to remote denial of service.