VendorsGemaltosentinel_ldkall versions
Vulnerabilities

Gemalto Sentinel LDK

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2019-8283
Hasplm cookie in Gemalto Admin Control Center, all versions prior to 7.92, does not have 'HttpOnly' flag. This allows malicious javascript to steal it.
Published 2019-06-07 · Modified
6.5EPSS 0.012
CVE-2019-8282
Gemalto Admin Control Center, all versions prior to 7.92, uses cleartext HTTP to communicate with www3.safenet-inc.com to obtain language packs. This allows attacker to do man-in-the-middle (MITM) attack and replace original language pack by malicious one.
Published 2019-06-07 · Modified
5.3EPSS 0.004