CVE-2024-1195
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
02/02/2024
Last modified:
17/05/2024
Description
A vulnerability classified as critical was found in iTop VPN up to 4.0.0.1. Affected by this vulnerability is an unknown functionality in the library ITopVpnCallbackProcess.sys of the component IOCTL Handler. The manipulation leads to denial of service. The attack needs to be approached locally. The identifier VDB-252685 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
Impact
Base Score 3.x
5.50
Severity 3.x
MEDIUM
Base Score 2.0
4.60
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:iobit:itop_vpn:*:*:*:*:*:*:*:* | 4.0.0.1 (including) |
To consult the complete list of CPE names with products and versions, see this page



