IXON VPN Client before 1.4.4 on Linux and macOS allows Local Privilege Escalation to root because there is code execution from a configuration file that can be controlled by a low-privileged user. There is a race condition in which a temporary configuration file, in a world-writable directory, can be overwritten.
References
Configurations
No configuration.
History
08 May 2025, 14:39
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
07 May 2025, 19:16
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-05-07 19:16
Updated : 2025-05-08 14:39
NVD link : CVE-2025-26168
Mitre link : CVE-2025-26168
CVE.ORG link : CVE-2025-26168
JSON object : View
Products Affected
No product.
CWE
CWE-732
Incorrect Permission Assignment for Critical Resource