CVE-2019-25343

Severity CVSS v4.0:
HIGH
Type:
Unavailable / Other
Publication date:
12/02/2026
Last modified:
13/02/2026

Description

NextVPN 4.10 contains an insecure file permissions vulnerability that allows local users to modify executable files with full access rights. Attackers can replace system executables with malicious files to gain SYSTEM or Administrator privileges through unauthorized file modification.