Описание
SaferVPN before 5.0.3.3 on Windows could allow low-privileged users to create or overwrite arbitrary files, which could cause a denial of service (DoS) condition, because a symlink from %LOCALAPPDATA%\SaferVPN\Log is followed.
Ссылки
- ExploitThird Party Advisory
- ExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 5.0.3.3 (исключая)
cpe:2.3:a:safervpn:safervpn:*:*:*:*:*:windows:*:*
EPSS
Процентиль: 59%
0.00384
Низкий
8.1 High
CVSS3
5.5 Medium
CVSS2
Дефекты
CWE-59
Связанные уязвимости
github
больше 3 лет назад
SaferVPN before 5.0.3.3 on Windows could allow low-privileged users to create or overwrite arbitrary files, which could cause a denial of service (DoS) condition, because a symlink from %LOCALAPPDATA%\SaferVPN\Log is followed.
EPSS
Процентиль: 59%
0.00384
Низкий
8.1 High
CVSS3
5.5 Medium
CVSS2
Дефекты
CWE-59