F-Secure Key Plaintext Information Disclosure

medium Nessus Plugin ID 76788

Synopsis

An application on the remote host is affected by an information disclosure vulnerability.

Description

The remote Windows host has a version of F-Secure Key prior to 1.5.145. It is, therefore, affected by an unspecified error that could allow a local attacker to dump the contents of memory and obtain sensitive plaintext information.

Solution

Upgrade to 1.5.145 or later.

See Also

http://www.f-secure.com/en/web/labs_global/fsc-2014-3

Plugin Details

Severity: Medium

ID: 76788

File Name: fsecure_key_1_5_145.nasl

Version: 1.5

Type: local

Agent: windows

Family: Windows

Published: 7/25/2014

Updated: 1/2/2019

Supported Sensors: Nessus Agent, Nessus

Risk Information

CVSS v2

Risk Factor: Medium

Base Score: 4.7

Temporal Score: 3.5

Vector: CVSS2#AV:L/AC:M/Au:N/C:C/I:N/A:N

Vulnerability Information

CPE: x-cpe:/a:f-secure:key

Required KB Items: installed_sw/F-Secure Key

Exploit Ease: No known exploits are available

Patch Publication Date: 5/9/2014

Vulnerability Publication Date: 5/9/2014

Reference Information

BID: 68552