CVE-2023-26467
Published Apr 10, 2023A man in the middle can redirect traffic to a malicious server in a compromised configuration.
Vendor/product archive
3 CVEs tagged to pega / synchronization_engine — 0 Critical, 1 High, 2 Medium, 0 Low, 0 Unrated.
A man in the middle can redirect traffic to a malicious server in a compromised configuration.
A user with a compromised configuration can start an unsigned binary as a service.
A user with non-Admin access can change a configuration file on the client to modify the Server URL.