NextVPN 4.10 contains an insecure file permissions vulnerability that allows local users to modify executable files with full access rights. Attackers can replace system executables with malicious files to gain SYSTEM or Administrator privileges through unauthorized file modification.
References
Configurations
No configuration.
History
12 Feb 2026, 20:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-02-12 20:16
Updated : 2026-02-13 14:23
NVD link : CVE-2019-25343
Mitre link : CVE-2019-25343
CVE.ORG link : CVE-2019-25343
JSON object : View
Products Affected
No product.
CWE
CWE-732
Incorrect Permission Assignment for Critical Resource
