CVE-2014-5455

Unquoted Windows search path vulnerability in the ptservice service prior to PrivateTunnel version 3.0 (Windows) and OpenVPN Connect version 3.1 (Windows) allows local users to gain privileges via a crafted program.exe file in the %SYSTEMDRIVE% folder.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:openvpn:openvpn:2.1.28.0:*:*:*:*:*:*:*
cpe:2.3:a:privatetunnel:privatetunnel:2.3.8:*:*:*:*:*:*:*

History

No history.

Information

Published : 2014-08-25 16:55

Updated : 2023-12-10 11:31


NVD link : CVE-2014-5455

Mitre link : CVE-2014-5455

CVE.ORG link : CVE-2014-5455


JSON object : View

Products Affected

openvpn

  • openvpn

privatetunnel

  • privatetunnel
CWE
CWE-428

Unquoted Search Path or Element