Vulnerabilities > Sonicwall > Global VPN Client > 4.10.4.0314

DATE CVE VULNERABILITY TITLE RISK
2022-05-04 CVE-2021-20051 Uncontrolled Search Path Element vulnerability in Sonicwall Global VPN Client 4.10.4.0314/4.10.6
SonicWall Global VPN Client 4.10.7.1117 installer (32-bit and 64-bit) and earlier versions have a DLL Search Order Hijacking vulnerability in one of the installer components.
6.9
2021-09-21 CVE-2021-20037 Incorrect Default Permissions vulnerability in Sonicwall Global VPN Client 4.10.4.0314
SonicWall Global VPN Client 4.10.5 installer (32-bit and 64-bit) incorrect default file permission vulnerability leads to privilege escalation which potentially allows command execution in the host operating system.
local
low complexity
sonicwall CWE-276
7.2
2020-10-28 CVE-2020-5145 Uncontrolled Search Path Element vulnerability in Sonicwall Global VPN Client 4.10.4.0314
SonicWall Global VPN client version 4.10.4.0314 and earlier have an insecure library loading (DLL hijacking) vulnerability.
6.9
2020-10-28 CVE-2020-5144 Untrusted Search Path vulnerability in Sonicwall Global VPN Client 4.10.4.0314
SonicWall Global VPN client version 4.10.4.0314 and earlier allows unprivileged windows user to elevate privileges to SYSTEM through loaded process hijacking vulnerability.
6.9