Security Advisory

CVE-2018-4010

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2018-09-07 15:00:00
Last updated 2024-09-16 17:54:36
Assigner talos
CVSS score 8.8
State PUBLISHED

Description

An exploitable code execution vulnerability exists in the connect functionality of ProtonVPN VPN client 1.5.1. A specially crafted configuration file can cause a privilege escalation, resulting in the ability to execute arbitrary commands with the system's privileges.