CVE-2023-29820

An issue found in Webroot SecureAnywhere Endpoint Protection CE 23.1 v.9.0.33.39 and before allows a local attacker to access sensitive information via the EXE installer. NOTE: the vendor's perspective is that this is not a separate vulnerability relative to CVE-2023-29818 and CVE-2023-29819.
Configurations

Configuration 1 (hide)

cpe:2.3:a:webroot:secureanywhere:*:*:*:*:*:*:*:*

History

07 Nov 2023, 04:11

Type Values Removed Values Added
Summary ** DISPUTED ** An issue found in Webroot SecureAnywhere Endpoint Protection CE 23.1 v.9.0.33.39 and before allows a local attacker to access sensitive information via the EXE installer. NOTE: the vendor's perspective is that this is not a separate vulnerability relative to CVE-2023-29818 and CVE-2023-29819. An issue found in Webroot SecureAnywhere Endpoint Protection CE 23.1 v.9.0.33.39 and before allows a local attacker to access sensitive information via the EXE installer. NOTE: the vendor's perspective is that this is not a separate vulnerability relative to CVE-2023-29818 and CVE-2023-29819.

27 May 2023, 19:15

Type Values Removed Values Added
Summary An issue found in Webroot SecureAnywhere Endpoint Protection CE 23.1 v.9.0.33.39 and before allows a local attacker to access sensitive information via the EXE installer. ** DISPUTED ** An issue found in Webroot SecureAnywhere Endpoint Protection CE 23.1 v.9.0.33.39 and before allows a local attacker to access sensitive information via the EXE installer. NOTE: the vendor's perspective is that this is not a separate vulnerability relative to CVE-2023-29818 and CVE-2023-29819.

23 May 2023, 20:50

Type Values Removed Values Added
CWE CWE-668
CPE cpe:2.3:a:webroot:secureanywhere:*:*:*:*:*:*:*:*
First Time Webroot secureanywhere
Webroot
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
References (MISC) https://www.spenceralessi.com/CVEs/2023-05-10-Webroot-SecureAnywhere/ - (MISC) https://www.spenceralessi.com/CVEs/2023-05-10-Webroot-SecureAnywhere/ - Third Party Advisory
References (MISC) http://secureanywhere.com - (MISC) http://secureanywhere.com - Product
References (MISC) http://webroot.com - (MISC) http://webroot.com - Product

12 May 2023, 11:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-05-12 11:15

Updated : 2024-04-11 01:19


NVD link : CVE-2023-29820

Mitre link : CVE-2023-29820

CVE.ORG link : CVE-2023-29820


JSON object : View

Products Affected

webroot

  • secureanywhere
CWE
CWE-668

Exposure of Resource to Wrong Sphere