Описание
Securepoint SSL VPN Client v2 before 2.0.32 on Windows has unsafe configuration handling that enables local privilege escalation to NT AUTHORITY\SYSTEM. A non-privileged local user can modify the OpenVPN configuration stored under "%APPDATA%\Securepoint SSL VPN" and add a external script file that is executed as privileged user.
Ссылки
- ExploitThird Party Advisory
- Mailing ListThird Party Advisory
- ExploitThird Party Advisory
- Third Party Advisory
- ExploitThird Party Advisory
- Mailing ListThird Party Advisory
- ExploitThird Party Advisory
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия от 2.0.15 (включая) до 2.0.32 (исключая)
cpe:2.3:a:securepoint:openvpn-client:*:*:*:*:*:windows:*:*
EPSS
Процентиль: 21%
0.00067
Низкий
7.8 High
CVSS3
7.2 High
CVSS2
Дефекты
CWE-269
EPSS
Процентиль: 21%
0.00067
Низкий
7.8 High
CVSS3
7.2 High
CVSS2
Дефекты
CWE-269