Three IXON VPN Client Vulnerabilities Let Attackers Escalate Privileges
ID: 49371fde-d40e-5eb9-ab4f-58fd1e97f237
STIX ID: report--49371fde-d40e-5eb9-ab4f-58fd1e97f237
Feed Name: GBHackers
Security researchers disclosed three vulnerabilities in the IXON industrial VPN client that allow local privilege escalation: one undisclosed issue being withheld until patched, a Linux attack that abuses a predictable temporary OpenVPN configuration file via a named pipe to execute root-level scripts, and a Windows race-condition/temporary-file attack enabling NT AUTHORITY\SYSTEM execution. The issues stem from the client writing sensitive OpenVPN configs to predictable locations during connection establishment, and researchers demonstrated a proof-of-concept for the Linux exploit.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
