CVE-2023-47267

EUVD-2023-51397
An issue discovered in TheGreenBow Windows Enterprise Certified VPN Client 6.52, Windows Standard VPN Client 6.87, and Windows Enterprise VPN Client 6.87 allows attackers to gain escalated privileges via crafted changes to memory mapped file.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 40%
Affected Products (NVD)
VendorProductVersion
thegreenbowthegreenbow_vpn_client
6.52.004 ≤
𝑥
< 6.52.006
thegreenbowthegreenbow_vpn_client
6.87.001 ≤
𝑥
< 6.87.108
thegreenbowthegreenbow_vpn_client
6.87.001 ≤
𝑥
< 6.87.109
𝑥
= Vulnerable software versions