7.2
CVSSv2

CVE-2012-3485

Published: 26/08/2012 Updated: 13/12/2013
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 730
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Tunnelblick 3.3beta20 and previous versions relies on argv[0] to determine the name of an appropriate (1) kernel module pathname or (2) executable file pathname, which allows local users to gain privileges via an execl system call.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

google tunnelblick

Exploits

## # This file is part of the Metasploit Framework and may be subject to # redistribution and commercial restrictions Please see the Metasploit # web site for more information on licensing and terms of use # metasploitcom/ ## require 'msf/core' require 'rex' require 'msf/core/post/common' require 'msf/core/post/file' require 'msf/core/ ...
#!/bin/sh #### Pwnnel Blicker #### # for kids # # # # zx2c4 # # # ######################## # This is another exploit for Tunnel Blick # Other exploits for Tunnel Blick are available here: # gitzx2c4com/Pwnnel-Blicker/tree/ echo "[+] Making vulnerable directory ...