Vulnerabilities > Pritunl

DATE CVE VULNERABILITY TITLE RISK
2022-02-20 CVE-2022-25372 Improper Privilege Management vulnerability in Pritunl Pritunl-Client-Electron
Pritunl Client through 1.2.3019.52 on Windows allows local privilege escalation, related to an ACL entry for CREATOR OWNER in platform_windows.go.
local
low complexity
pritunl CWE-269
7.8
2021-04-30 CVE-2020-27519 Improper Privilege Management vulnerability in Pritunl Pritunl-Client-Electron 1.2.2550.20
Pritunl Client v1.2.2550.20 contains a local privilege escalation vulnerability in the pritunl-service component.
local
low complexity
pritunl CWE-269
7.8
2020-11-19 CVE-2020-25989 Link Following vulnerability in Pritunl Pritunl-Client-Electron
Privilege escalation via arbitrary file write in pritunl electron client 1.0.1116.6 through v1.2.2550.20.
local
low complexity
pritunl CWE-59
7.8
2020-10-01 CVE-2020-25200 Information Exposure Through Discrepancy vulnerability in Pritunl 1.29.2145.25
Pritunl 1.29.2145.25 allows attackers to enumerate valid VPN usernames via a series of /auth/session login attempts.
network
low complexity
pritunl CWE-203
5.3
2020-07-21 CVE-2016-7064 Improper Verification of Cryptographic Signature vulnerability in Pritunl Pritunl-Client
A flaw was found in pritunl-client before version 1.0.1116.6.
network
low complexity
pritunl CWE-347
7.5
2020-07-21 CVE-2016-7063 Path Traversal vulnerability in Pritunl Pritunl-Client
A flaw was found in pritunl-client before version 1.0.1116.6.
network
low complexity
pritunl CWE-22
critical
9.8