CVE-2021-42138

Severity CVSS v4.0:
Pending analysis
Type:
CWE-331 Insufficient Entropy
Publication date:
20/12/2021
Last modified:
03/01/2022

Description

A user of a machine protected by SafeNet Agent for Windows Logon may leverage weak entropy to access the encrypted credentials of any or all the users on that machine.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:thalesgroup:safenet_windows_logon_agent:*:*:*:*:*:*:*:* 3.4.4 (excluding)