CVE-2014-5455

ptservice <3.0 - Privilege Escalation

Title source: llm
STIX 2.1

Description

Unquoted Windows search path vulnerability in the ptservice service prior to PrivateTunnel version 3.0 (Windows) and OpenVPN Connect version 3.1 (Windows) allows local users to gain privileges via a crafted program.exe file in the %SYSTEMDRIVE% folder.

Exploits (1)

exploitdb WRITEUP
by LiquidWorm · textlocalwindows_x86
https://www.exploit-db.com/exploits/34037

Scores

EPSS 0.0058
EPSS Percentile 69.1%

Details

CWE
CWE-428
Status published
Products (2)
openvpn/openvpn 2.1.28.0
privatetunnel/privatetunnel 2.3.8
Published Aug 25, 2014
Tracked Since Feb 18, 2026