An issue exists in Stormshield SSL VPN Client prior to 3.2.0. A logged-in user, able to only launch the VPNSSL Client, can use the OpenVPN instance to execute malicious code as administrator on the local machine.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
stormshield ssl vpn client |