logo

Three IXON VPN Client Vulnerabilities Let Attackers Escalate Privileges

ID: 49371fde-d40e-5eb9-ab4f-58fd1e97f237

STIX ID: report--49371fde-d40e-5eb9-ab4f-58fd1e97f237

Feed Name: GBHackers

Threat Score
65/100

Date Published: 2025-04-28

Date Updated: 2026-04-22

Author: Kaaviya

...
...

Security researchers disclosed three vulnerabilities in the IXON industrial VPN client that allow local privilege escalation: one undisclosed issue being withheld until patched, a Linux attack that abuses a predictable temporary OpenVPN configuration file via a named pipe to execute root-level scripts, and a Windows race-condition/temporary-file attack enabling NT AUTHORITY\SYSTEM execution. The issues stem from the client writing sensitive OpenVPN configs to predictable locations during connection establishment, and researchers demonstrated a proof-of-concept for the Linux exploit.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.