PT-2026-88433 · Okta · Okta Verify For Windows

CVE-2026-78622

·

Publicado

2026-09-08

·

Atualizado

2026-09-08

CVSS v3.1

6.0

Média

VetorAV:L/AC:H/PR:L/UI:R/S:U/C:N/I:H/A:H
The Okta Verify for Windows uninstaller does not verify whether the user data directory is a filesystem junction before deleting its contents with elevated privileges. The delete operation follows the junction target, resulting in recursive deletion of unintended directory contents.

Correção

Link Following

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2026-78622

Produtos afetados

Okta Verify For Windows