vendor:
eToken PKI Client
by:
Gjoko 'LiquidWorm' Krstic
7.5
CVSS
HIGH
Unspecified Memory Corruption
119
CWE
Product Name: eToken PKI Client
Affected Version From: 4.5.2000
Affected Version To: 4.5.52
Patch Exists: NO
Related CWE:
CPE: a:aladdin:etoken_pki_client:4.5.52
Platforms Tested: Microsoft Windows XP Professional SP3
2010
Aladdin eToken PKI Client v4.5 Virtual File Handling Unspecified Memory Corruption PoC
The eToken PKI Client is vulnerable to an unspecified memory corruption issue. This vulnerability can be exploited by creating a specially crafted virtual file, which can lead to arbitrary code execution or denial of service.
Mitigation:
Upgrade to a patched version of the eToken PKI Client.