First published: Wed Oct 28 2020(Updated: )
SonicWall Global VPN client version 4.10.4.0314 and earlier allows unprivileged windows user to elevate privileges to SYSTEM through loaded process hijacking vulnerability.
Credit: PSIRT@sonicwall.com
Affected Software | Affected Version | How to fix |
---|---|---|
SonicWALL GLobal VPN Client | <=4.10.4.0314 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2020-5144.
The title of this vulnerability is 'SonicWall Global VPN client version 4.10.4.0314 and earlier allows unprivileged windows user to elevate privileges to SYSTEM through loaded process hijacking vulnerability.'
The affected software is SonicWall Global VPN client version 4.10.4.0314 and earlier.
The severity of CVE-2020-5144 is high with a severity value of 7.8.
To fix CVE-2020-5144, update to a version higher than 4.10.4.0314 of the SonicWall Global VPN client.