GHSA-w3p6-vc7r-vcv4HighCVSS 7.8

A flaw was found in NetworkManager-vpnc, a VPN plugin for NetworkManager. A local unprivileged...

Published
September 25, 2026
Last Modified
September 25, 2026

🔗 CVE IDs covered (1)

📋 Description

A flaw was found in NetworkManager-vpnc, a VPN plugin for NetworkManager. A local unprivileged user can exploit this vulnerability by injecting a newline character into the CA-File path. This manipulation allows the user to execute arbitrary commands as the root user, leading to local privilege escalation.

🔗 References (5)