CVE-2023-47267

CRITICAL

TheGreenBow VPN Client 6.52.004-6.52.005 and 6.87.001-6.87.107 - Privilege Escalation via Memory Mapped File

Title source: llm
STIX 2.1

Description

An issue discovered in TheGreenBow Windows Enterprise Certified VPN Client 6.52, Windows Standard VPN Client 6.87, and Windows Enterprise VPN Client 6.87 allows attackers to gain escalated privileges via crafted changes to memory mapped file.

References (1)

Core 1

Scores

CVSS v3 9.8
EPSS 0.0075
EPSS Percentile 50.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-269
Status published
Products (3)
thegreenbow/thegreenbow_vpn_client 6.52.004 - 6.52.006
thegreenbow/thegreenbow_vpn_client 6.87.001 - 6.87.108
thegreenbow/thegreenbow_vpn_client 6.87.001 - 6.87.109
Published Dec 19, 2023
Tracked Since Feb 18, 2026