Network Manager VPNC plugin (aka networkmanager-vpnc) before version 1.2.6 is vulnerable to a privilege escalation attack. A new line character can be used to inject a Password helper parameter into the configuration data passed to VPNC, allowing an attacker to execute arbitrary commands as root.
CVSS Details
- CVSS 3.1 Base Score: 7.8
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H)
- CVSS 3.0 Base Score: 8.8
- CVSS 3.0 Vector: (CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Arch Linux | — | Upgrade to the latest version of Arch Linux | Jul 11, 2025 | Jul 26, 2018 |
| Debian | — | Upgrade network-manager-vpnc | Jul 24, 2018 | Jul 23, 2018 |
| Gentoo Linux | — | Upgrade net-misc/networkmanager-vpnc. | Aug 23, 2018 | Jul 26, 2018 |
| Suse | — | Upgrade NetworkManager-vpnc-langUpgrade NetworkManager-vpncUpgrade NetworkManager-vpnc-gnome | Aug 11, 2018 | Jul 23, 2018 |
| Ubuntu | — | Upgrade network-manager-vpnc | Nov 19, 2024 | Jul 26, 2018 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub