PT-2025-43956 · Veepn · Veepn
Lakshay12311
+1
·
Published
2025-10-27
·
Updated
2025-11-24
·
CVE-2025-12286
CVSS v3.1
7.0
High
| Vector | AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
VeePN versions up to 1.6.2
Description
A weakness exists in VeePN related to an unquoted search path within the AVService component. The issue affects the file
C:Program Files (x86)VeePNavserviceavservice.exe and an unknown function within it. Exploitation requires local access and is considered difficult due to the high complexity involved. The vendor was notified of this issue but did not respond.Recommendations
Versions prior to 1.6.2 are recommended to be updated.
Exploit
Fix
Untrusted Search Path
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Veepn