CVE-2025-12286
Gravedad CVSS v4.0:
ALTA
Tipo:
CWE-426
Ruta de búsqueda no confiable
Fecha de publicación:
27/10/2025
Última modificación:
30/10/2025
Descripción
*** Pendiente de traducción *** A weakness has been identified in VeePN up to 1.6.2. This affects an unknown function of the file C:\Program Files (x86)\VeePN\avservice\avservice.exe of the component AVService. This manipulation causes unquoted search path. The attack requires local access. A high degree of complexity is needed for the attack. The exploitability is reported as difficult. The vendor was contacted early about this disclosure but did not respond in any way.
Impacto
Puntuación base 4.0
7.30
Gravedad 4.0
ALTA
Puntuación base 3.x
7.00
Gravedad 3.x
ALTA
Puntuación base 2.0
6.00
Gravedad 2.0
MEDIA



