CVE-2023-50443: Primx Cryhod
Medium severity, CVSS 4.6. EPSS: 0.3% chance of exploitation in the next 30 days.
Encrypted disks created by PRIMX CRYHOD for Windows before Q.2020.4 (ANSSI qualification submission) or CRYHOD for Windows before 2023.5 can be modified by an unauthenticated attacker to include a UNC reference so that it could trigger outbound network traffic from computers on which disks are opened.
Affected products
- Primx Cryhod: before 2020.4 (fixed in 2020.4); from 2021.0, before 2021.3 (fixed in 2021.3); from 2023.0, before 2023.5 (fixed in 2023.5)
Published 2023-12-13. Last modified 2026-06-17.