Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-12448 | An issue in CatoNetworks CatoClient before v.5.8.0 allows attackers to escalate privileges and achieve a race condition (TOCTOU) via the PrivilegedHelperTool component. |
Mon, 12 May 2025 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Catonetworks
Catonetworks cato Client |
|
| CPEs | cpe:2.3:a:catonetworks:cato_client:*:*:*:*:*:macos:*:* | |
| Vendors & Products |
Catonetworks
Catonetworks cato Client |
|
| Metrics |
cvssV3_1
|
Mon, 28 Apr 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sun, 27 Apr 2025 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An issue in CatoNetworks CatoClient before v.5.8.0 allows attackers to escalate privileges and achieve a race condition (TOCTOU) via the PrivilegedHelperTool component. | |
| Title | CatoNetworks CatoClient up to 5.8 PrivilegedHelperTool Race Condition | |
| Weaknesses | CWE-362 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: Cato
Published:
Updated: 2025-04-28T16:31:10.186Z
Reserved: 2025-04-22T21:43:49.202Z
Link: CVE-2025-3886
Updated: 2025-04-28T16:29:22.161Z
Status : Analyzed
Published: 2025-04-27T11:15:15.940
Modified: 2025-05-12T19:08:46.017
Link: CVE-2025-3886
No data.
OpenCVE Enrichment
No data.
EUVD