CVE-2025-1683

Improper link resolution before file access in the Nomad module of the 1E Client, in versions prior to 25.3, enables an attacker with local unprivileged access on a Windows system to delete arbitrary files on the device by exploiting symbolic links.
Configurations

No configuration.

History

13 Mar 2025, 10:15

Type Values Removed Values Added
References
  • () https://www.1e.com/trust-security-compliance/?ac=0-4 -

12 Mar 2025, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-03-12 16:15

Updated : 2025-03-13 10:15


NVD link : CVE-2025-1683

Mitre link : CVE-2025-1683

CVE.ORG link : CVE-2025-1683


JSON object : View

Products Affected

No product.

CWE
CWE-59

Improper Link Resolution Before File Access ('Link Following')