CVE-2023-29485 describes a critical vulnerability in Heimdal Thor agent versions 3.4.2 and earlier on Windows, and 2.6.9 and earlier on macOS, impacting its DarkLayer Guard threat prevention module. This flaw, rated 9.8 CVSS (Critical), allows unauthenticated attackers to bypass network filtering, execute arbitrary code, and exfiltrate sensitive information with low attack complexity. While Heimdal disputes the issue's validity, arguing their product isn't designed to intercept third-party DNS requests, the potential for complete compromise is high. There is currently no evidence of active exploitation, public exploit code, or significant community discussion surrounding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 3.5.3CPE matchmatch criteria | cpe:2.3:a:heimdalsecurity:thor:*:*:*:*:*:*:*:* | ||
<= 2.6.9CPE matchmatch criteria | cpe:2.3:a:heimdalsecurity:thor:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.