Description

Improper link resolution before file access in the Nomad module of the 1E Client, in versions prior to 25.3, enables an attacker with local unprivileged access on a Windows system to delete arbitrary files on the device by exploiting symbolic links.

INFO

Published Date :

2025-03-12T15:25:27.765Z

Last Modified :

2025-06-18T18:40:59.816Z

Source :

1E
AFFECTED PRODUCTS

The following products are affected by CVE-2025-1683 vulnerability.

Vendors Products
1e
  • Client
  • Platform

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact