Lucene search

K
cvelistMitreCVELIST:CVE-2022-24141
HistoryJul 06, 2022 - 12:41 p.m.

CVE-2022-24141

2022-07-0612:41:49
mitre
www.cve.org
1
itopvpn
datastate
pipe_server
security
vulnerability

AI Score

5.9

Confidence

High

EPSS

0.001

Percentile

28.6%

The iTopVPNmini.exe component of iTop VPN 3.2 will try to connect to datastate_iTopVPN_Pipe_Server on a loop. An attacker that opened a named pipe with the same name can use it to gain the token of another user by listening for connections and abusing ImpersonateNamedPipeClient().

AI Score

5.9

Confidence

High

EPSS

0.001

Percentile

28.6%

Related for CVELIST:CVE-2022-24141