Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Securepoint Subscribe
Filtered by product Openvpn-client
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-35523 1 Securepoint 1 Openvpn-client 2021-07-02 7.2 HIGH 7.8 HIGH
Securepoint SSL VPN Client v2 before 2.0.32 on Windows has unsafe configuration handling that enables local privilege escalation to NT AUTHORITY\SYSTEM. A non-privileged local user can modify the OpenVPN configuration stored under "%APPDATA%\Securepoint SSL VPN" and add a external script file that is executed as privileged user.