Описание
vpn-user-portal (aka eduVPN or Let's Connect!) before 2.3.14, as packaged for Debian 10, Debian 11, and Fedora, allows remote authenticated users to obtain OS filesystem access, because of the interaction of QR codes with an exec that uses the -r option. This can be leveraged to obtain additional VPN access.
Ссылки
- Mailing ListThird Party Advisory
- Release NotesThird Party Advisory
- Mailing ListThird Party Advisory
Уязвимые конфигурации
Одновременно
Одно из
EPSS
6.5 Medium
CVSS3
9 Critical
CVSS2
Дефекты
Связанные уязвимости
vpn-user-portal (aka eduVPN or Let's Connect!) before 2.3.14, as packaged for Debian 10, Debian 11, and Fedora, allows remote authenticated users to obtain OS filesystem access, because of the interaction of QR codes with an exec that uses the -r option. This can be leveraged to obtain additional VPN access.
Уязвимость программного обеспечения для доступа к VPN-сервису vpn-user-portal, существующая из-за недостаточной проверки входных данных, позволяющая нарушителю повысить свои привилегии
EPSS
6.5 Medium
CVSS3
9 Critical
CVSS2