CyberRota Analysis
AI-GeneratedThe Cato Networks SDP Client for Windows prior to version 6.12.6 is vulnerable to a local privilege escalation flaw that allows an attacker to delete arbitrary files with SYSTEM privileges due to inadequate validation of a client-supplied SID over a local IPC named pipe. This vulnerability poses a significant risk to system integrity and confidentiality, making it critical for organizations using affected versions of the software to prioritize patching. System administrators and security teams should act promptly to mitigate potential exploitation.
Original NVD Description
Cato Networks SDP Client for Windows before 6.12.6 allows a local user to delete arbitrary files with SYSTEM privileges via improper validation of a client-supplied SID over a local IPC named pipe.