Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5w8r-9w4r-m8w8

Опубликовано: 19 дек. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

An insecure library loading vulnerability has been reported to affect QVPN Device Client. If exploited, the vulnerability could allow local attackers who have gained user access to execute unauthorized code or commands.

We have already fixed the vulnerability in the following versions: QVPN Windows 2.0.0.1316 and later QVPN Windows 2.0.0.1310 and later

An insecure library loading vulnerability has been reported to affect QVPN Device Client. If exploited, the vulnerability could allow local attackers who have gained user access to execute unauthorized code or commands.

We have already fixed the vulnerability in the following versions: QVPN Windows 2.0.0.1316 and later QVPN Windows 2.0.0.1310 and later

EPSS

Процентиль: 22%
0.00073
Низкий

7.8 High

CVSS3

Дефекты

CWE-427

Связанные уязвимости

CVSS3: 7.8
nvd
около 1 года назад

An insecure library loading vulnerability has been reported to affect QVPN Device Client. If exploited, the vulnerability could allow local attackers who have gained user access to execute unauthorized code or commands. We have already fixed the vulnerability in the following versions: QVPN Windows 2.0.0.1316 and later QVPN Windows 2.0.0.1310 and later

CVSS3: 7.8
fstec
больше 2 лет назад

Уязвимость клиента QVPN Device Client, связанная с недостаточной проверкой входных данных, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 22%
0.00073
Низкий

7.8 High

CVSS3

Дефекты

CWE-427