CVE-2023-47101

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Oct 30, 2023
Updated: Nov 7, 2023

Summary

CVE-2023-47101 is a newly disclosed vulnerability affecting the Securepoint SSL VPN Client's installer, identified as openvpn-client-installer. This issue permits local privilege escalation during installation or repair processes, potentially granting attackers higher system access and control. By exploiting this flaw, an attacker could gain elevated privileges and install unauthorized software, modify system configurations, or even execute malicious code. Users are strongly advised to update their Securepoint SSL VPN Client to the latest version (2.0.40) to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share