CVE Database
/

CVE-2015-0925

Back to search

CVE-2015-0925

Published: Jan 22, 2015

Modified: Aug 6, 2024

PUBLISHED

Description

The client in iPass Open Mobile before 2.4.5 on Windows allows remote authenticated users to execute arbitrary code via a DLL pathname in a crafted Unicode string that is improperly handled by a subprocess reached through a named pipe, as demonstrated by a UNC share pathname.

VendorProductVersions

n/a

n/a

affected
n/a

References

VU#110652
third-party-advisory
x_refsource_CERT-VN

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now