CVE-2025-1683 Information

Description

Improper link resolution before file access in the Nomad module of the 1E Client in versions prior to 25.3 enables an attacker with local unprivileged access on a Windows system to delete arbitrary files on the device by exploiting symbolic links.

Reference

https://capec.mitre.org/data/definitions/27.html https://cwe.mitre.org/data/definitions/59.html https://nvd.nist.gov/vuln/detail/CVE-2025-1683 https://www.1e.com/trust-security-compliance/cve-info/

Share on: