First published: Tue Sep 21 2021(Updated: )
SonicWall Global VPN Client 4.10.5 installer (32-bit and 64-bit) incorrect default file permission vulnerability leads to privilege escalation which potentially allows command execution in the host operating system. This vulnerability impacts GVC 4.10.5 installer and earlier.
Credit: PSIRT@sonicwall.com
Affected Software | Affected Version | How to fix |
---|---|---|
SonicWALL GLobal VPN Client | <=4.10.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this SonicWall Global VPN Client vulnerability is CVE-2021-20037.
The title of this SonicWall Global VPN Client vulnerability is 'SonicWall Global VPN Client 4.10.5 installer (32-bit and 64-bit) incorrect default file permission vulnerability'.
This SonicWall Global VPN Client vulnerability can lead to privilege escalation and potentially allow command execution in the host operating system.
SonicWall Global VPN Client version 4.10.5 and earlier is affected by this vulnerability.
This SonicWall Global VPN Client vulnerability has a severity rating of 7.8 (high).
To fix this SonicWall Global VPN Client vulnerability, update to a version beyond 4.10.5 or apply any patches or fixes provided by SonicWall.