Netskope is notified about a potential gap in its Netskoped Client for Windows systems where a malicious insider with admin privileges can lead to bypassing the NSClient Tamper Protections due to weak Discretionary Access Control List (DACLs) on the service object and related registry keys,.
Exploitability
AV:LAC:LAT:NPR:HUI:NVulnerable System
VC:NVI:HVA:HSubsequent System
SC:NSI:NSA:N6.8/CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:N/VI:H/VA:H/SC:N/SI:N/SA:NConfiguration