mirror of
https://github.com/0xMarcio/cve.git
synced 2026-06-02 07:51:39 +02:00
19 lines
796 B
Markdown
19 lines
796 B
Markdown
### [CVE-2020-25744](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-25744)
|
|

|
|

|
|

|
|
|
|
### Description
|
|
|
|
SaferVPN before 5.0.3.3 on Windows could allow low-privileged users to create or overwrite arbitrary files, which could cause a denial of service (DoS) condition, because a symlink from %LOCALAPPDATA%\SaferVPN\Log is followed.
|
|
|
|
### POC
|
|
|
|
#### Reference
|
|
- https://medium.com/@thebinary0x1/safervpn-for-windows-arbitrary-file-overwrite-dos-bdc88fdb5ead
|
|
- https://www.youtube.com/watch?v=0QdRJdA_aos
|
|
|
|
#### Github
|
|
- https://github.com/ARPSyndicate/cvemon
|
|
|