Incorrect Default Permissions on C:\Programdata\Secdo\Logs folder in Secdo allows local authenticated users to overwrite system files and gain escalated privileges. This issue affects all versions Secdo for Windows.
Fixes

Solution

This product is no longer supported and the issue will not be fixed. Change permission on C:\Programdata\Secdo\Logs folder to not allow unprivileged users access.


Workaround

Change permission on C:\Programdata\Secdo\Logs to not allow unprivileged users access.

History

Mon, 16 Sep 2024 18:45:00 +0000

Type Values Removed Values Added
Title Secdo: Incorrect Default Permissions Secdo: Incorrect Default Permissions

cve-icon MITRE

Status: PUBLISHED

Assigner: palo_alto

Published:

Updated: 2024-09-16T18:28:43.796Z

Reserved: 2019-12-04T00:00:00

Link: CVE-2020-1985

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-04-08T19:15:13.587

Modified: 2024-11-21T05:11:47.330

Link: CVE-2020-1985

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.