VendorsGemaltosentinel_ldk_rteall versions
Vulnerabilities

Gemalto Sentinel LDK RTE

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

6CVEs
CVE-2017-11496
Stack buffer overflow in hasplms in Gemalto ACC (Admin Control Center), all versions ranging from HASP SRM 2.10 to Sentinel LDK 7.50, allows remote attackers to execute arbitrary code via malformed ASN.1 streams in V2C and similar input files.
Published 2017-10-02 · Modified
9.8EPSS 0.048
CVE-2017-11497
Stack buffer overflow in hasplms in Gemalto ACC (Admin Control Center), all versions ranging from HASP SRM 2.10 to Sentinel LDK 7.50, allows remote attackers to execute arbitrary code via language packs containing filenames longer than 1024 characters.
Published 2017-10-02 · Modified
9.8EPSS 0.048
CVE-2017-11498
Buffer overflow in hasplms in Gemalto ACC (Admin Control Center), all versions ranging from HASP SRM 2.10 to Sentinel LDK 7.50, allows remote attackers to shut down the remote process (a denial of service) via a language pack (ZIP file) with invalid HTML files.
Published 2017-10-02 · Modified
7.5EPSS 0.030
CVE-2018-6304
Stack overflow in custom XML-parser in Gemalto's Sentinel LDK RTE version before 7.65 leads to remote denial of service
Published 2018-03-13 · Modified
7.5EPSS 0.019
CVE-2018-6305
Denial of service in Gemalto's Sentinel LDK RTE version before 7.65
Published 2018-03-13 · Modified
7.5EPSS 0.013
CVE-2018-8900
The License Manager service of HASP SRM, Sentinel HASP and Sentinel LDK products prior to Sentinel LDK RTE 7.80 allows remote attackers to inject malicious web script in the logs page of Admin Control Center (ACC) for cross-site scripting (XSS) vulnerability.
Published 2018-05-02 · Modified
6.1EPSS 0.008