CVE Database
/

CVE-2022-0517

Back to search

CVE-2022-0517

Published: Dec 22, 2022

Modified: Apr 16, 2025

PUBLISHED

Description

Mozilla VPN can load an OpenSSL configuration file from an unsecured directory. A user or attacker with limited privileges could leverage this to launch arbitrary code with SYSTEM privilege. This vulnerability affects Mozilla VPN < 2.7.1.

VendorProductVersions

Mozilla

Mozilla VPN

affected
unspecified - < 2.7.1

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now