CVE-2024-36495
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
24/06/2024
Last modified:
08/07/2024
Description
The application Faronics WINSelect (Standard + Enterprise) saves its configuration in an encrypted file on the file system which "Everyone" has read and write access to, path to file:<br />
<br />
<br />
<br />
C:\ProgramData\WINSelect\WINSelect.wsd<br />
<br />
The path for the affected WINSelect Enterprise configuration file is:<br />
<br />
C:\ProgramData\Faronics\StorageSpace\WS\WINSelect.wsd
Impact
Base Score 3.x
7.70
Severity 3.x
HIGH



