PT-2026-5850 · Vpnunlimitedapp · Vpn Unlimited
Amin Rawah
·
Published
2026-02-03
·
Updated
2026-02-03
·
CVE-2020-37101
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
VPN Unlimited 6.1 contains an unquoted service path vulnerability that allows local attackers to inject malicious executables into the service binary path. Attackers can exploit the unquoted path in 'C:Program Files (x86)VPN Unlimited' to replace the service executable and gain elevated system privileges.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Vpn Unlimited